Show patches with: State = Action Required       |    Archived = No       |   144 patches
« 1 2 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[1/1] netfilter: nf_tables_offload: drop device refcount on error [1/1] netfilter: nf_tables_offload: drop device refcount on error - 1 - - --- 2026-06-05 Florian Westphal New
[1/5,nf-next,v4] netfilter: synproxy: drop packets if timestamp adjustment fails netfilter: synproxy: misc fixes about synproxy core - 1 - - --- 2026-05-26 Fernando Fernandez Mancera New
[1/6] netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[1/9,nf-next] netfilter: xtables: use DEBUG_NET_WARN_ON_ONCE in packet and control paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[2/5,nf-next,v4] netfilter: synproxy: adjust duplicate timestamp options netfilter: synproxy: misc fixes about synproxy core - 1 - - --- 2026-05-26 Fernando Fernandez Mancera New
[2/6] netfilter: ipset: Don't use test_bit() in lockless RCU readers in bitmap types netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[2/9,nf-next] netfilter: nf_tables: use DEBUG_NET_WARN_ON_ONCE in packet and control paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[3/5,nf-next,v4] netfilter: synproxy: fix unaligned memory access in timestamp adjustment netfilter: synproxy: misc fixes about synproxy core - 1 - - --- 2026-05-26 Fernando Fernandez Mancera New
[3/6] netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer() netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[3/9,nf-next] netfilter: nfnetlink: use DEBUG_NET_WARN_ON_ONCE for attribute validation netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[4/3,nf,v4] netfilter: nf_conntrack_helper: call .destroy() when helper is unregistered Untitled series #504819 - 1 - - --- 2026-05-18 Pablo Neira Ayuso New
[4/5,nf-next,v4] netfilter: synproxy: protect nf_ct_seqadj_init() with conntrack lock netfilter: synproxy: misc fixes about synproxy core - 1 - - --- 2026-05-26 Fernando Fernandez Mancera New
[4/6] netfilter: ipset: skip gc when resize is in progress netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[4/9,nf-next] netfilter: conntrack: use DEBUG_NET_WARN_ON_ONCE on packet paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[5/6] netfilter: ipset: fix potential torn read in reuse/forceadd cases netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[5/9,nf-next] netfilter: nat: use DEBUG_NET_WARN_ON_ONCE in core and helper paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[6/6] netfilter: ipset: add comment how cidr bookkeeping is working netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[6/9,nf-next] netfilter: tproxy: use DEBUG_NET_WARN_ON_ONCE for protocol fallbacks netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[7/9,nf-next] netfilter: bpf: use DEBUG_NET_WARN_ON_ONCE for missing BTF structures netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[8/9,nf-next] netfilter: flowtable: use DEBUG_NET_WARN_ON_ONCE in offload path netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[9/9,nf-next] netfilter: conncount: use DEBUG_NET_WARN_ON_ONCE on reaching count limit netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[BUG] KASAN: slab-use-after-free in hash_ipportip6_resize [BUG] KASAN: slab-use-after-free in hash_ipportip6_resize - - - - --- 2026-04-23 Eulgyu Kim New
[RFC,net-next,1/4] net: flow_offload: let drivers report byte counter semantics improve hw flow offload byte accounting - - - - --- 2026-04-09 Daniel Golle New
[RFC,net-next,2/4] nf_flow_table: track sub-interface and bridge ifindex in flow tuple improve hw flow offload byte accounting - - - - --- 2026-04-09 Daniel Golle New
[RFC,net-next,3/4] nf_flow_table: convert hw byte counts and update sub-interface stats improve hw flow offload byte accounting - - - - --- 2026-04-09 Daniel Golle New
[RFC,net-next,4/4] net: ethernet: mtk_eth_soc: report INGRESS_L2 byte_type in flow stats improve hw flow offload byte accounting - - - - --- 2026-04-09 Daniel Golle New
[RFC,nf,1/2] netfilter: nfnetlink_queue: restrict writes to network header netfilter: add restrictions/validations for packet rewrites - - - - --- 2026-05-27 Florian Westphal New
[RFC,nf,2/2] netfilter: nftables: restrict linklayer and network header writes netfilter: add restrictions/validations for packet rewrites - - - - --- 2026-05-27 Florian Westphal New
[V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl [V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl - - - - --- 2025-04-15 lvxiafei Under Review
[conntrack-tools] conntrackd: remove redundant retry checks [conntrack-tools] conntrackd: remove redundant retry checks - - - - --- 2026-06-02 Denis Ozhigov New
[libnftnl,v4] expr: add support to math expression [libnftnl,v4] expr: add support to math expression - - - - --- 2026-04-21 Fernando Fernandez Mancera New
[libnftnl] src: add connlimit stateful object support [libnftnl] src: add connlimit stateful object support - - - - --- 2025-11-04 Fernando Fernandez Mancera New
[net,8/8] sched/isolation: Make HK_TYPE_KTHREAD an alias of HK_TYPE_DOMAIN [net,1/8] ipvs: fixes for the new ip_vs_status info - 1 - - --- 2026-05-05 Pablo Neira Ayuso New
[net,v2] selftests: netfilter: conntrack_sctp_collision.sh: Introduce SCTP INIT collision test [net,v2] selftests: netfilter: conntrack_sctp_collision.sh: Introduce SCTP INIT collision test 1 - - - --- 2026-04-18 Yi Chen New
[net-next,00/15] Netfilter/IPVS updates for net-next - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,01/15] ipvs: add conn_max sysctl to limit connections [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,02/15] netfilter: nfnetlink_osf: fix mss parsing on big-endian architectures [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,03/15] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,04/15] netfilter: synproxy: drop packets if timestamp adjustment fails [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,05/15] netfilter: synproxy: adjust duplicate timestamp options [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,06/15] netfilter: synproxy: fix unaligned memory access in timestamp adjustment [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,07/15] netfilter: synproxy: protect nf_ct_seqadj_init() with conntrack lock [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,08/15] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 2 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,09/15] netfilter: nf_conntrack_helper: dynamically allocate struct nf_conntrack_helper [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,10/15] netfilter: nf_conntrack_pptp: move GRE specific cleanup to GRE tracker [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,11/15] netfilter: nf_conntrack_helper: add refcounting from datapath [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,12/15] netfilter: conntrack: revert ct extension genid infrastructure [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,13/15] netfilter: conntrack: call nf_ct_gre_keymap_destroy() if master helper is pptp [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,14/15] netfilter: flowtable: avoid num_encaps underflow on bridge VLAN untag [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 1 - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,15/15] netfilter: nf_conntrack: use get_unaligned_be32() in tcp_sack() [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - 1 - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,v3,1/4] netfilter: conntrack: add shared port and uint parsers for helpers netfilter: conntrack: shared port parser for helpers - - - - --- 2026-05-03 Rahul New
[net-next,v3,2/4] netfilter: nf_conntrack_irc: use nf_ct_helper_parse_port() netfilter: conntrack: shared port parser for helpers - 1 - - --- 2026-05-03 Rahul New
[net-next,v3,3/4] netfilter: nf_conntrack_amanda: use nf_ct_helper_parse_port() netfilter: conntrack: shared port parser for helpers - 1 - - --- 2026-05-03 Rahul New
[net-next,v3,4/4] netfilter: nf_conntrack_sip: use nf_ct_helper_parse_port() netfilter: conntrack: shared port parser for helpers - - - - --- 2026-05-03 Rahul New
[net-next] net/netfilter/nfnetlink_cttimeout: Use strscpy() to copy strings into arrays [net-next] net/netfilter/nfnetlink_cttimeout: Use strscpy() to copy strings into arrays - - - - --- 2026-06-08 David Laight New
[net-next] net/netfilter/xt_recent: Use strscpy() to copy device name [net-next] net/netfilter/xt_recent: Use strscpy() to copy device name - - - - --- 2026-06-06 David Laight New
[net] netfilter: nf_nat: avoid invalid nat_net pointer use on failed nf_nat_init() [net] netfilter: nf_nat: avoid invalid nat_net pointer use on failed nf_nat_init() - 1 - - --- 2026-04-28 Mathias Krause New
[nf,1/1] netfilter: ipset: fix comment extension lifetime during hash resize [nf,1/1] netfilter: ipset: fix comment extension lifetime during hash resize - 1 - 1 --- 2026-05-13 Ren Wei kadlec Needs Review / ACK
[nf,1/1] netfilter: nf_flow_table: separate tunnel route state from direct xmit [nf,1/1] netfilter: nf_flow_table: separate tunnel route state from direct xmit - 1 - - --- 2026-06-04 Ren Wei New
[nf,v2,1/1] bridge: br_netfilter: move fake rtable off struct net_bridge [nf,v2,1/1] bridge: br_netfilter: move fake rtable off struct net_bridge - 1 - - --- 2026-05-26 Ren Wei New
[nf,v2] netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() [nf,v2] netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() - 1 - - --- 2026-06-08 Lorenzo Bianconi New
[nf,v2] netfilter: nf_conncount: prevent connlimit drops for early confirmed ct [nf,v2] netfilter: nf_conncount: prevent connlimit drops for early confirmed ct - 1 - - --- 2026-05-14 Fernando Fernandez Mancera New
[nf,v3,1/1] bridge: br_netfilter: pin bridge device while NFQUEUE holds fake dst [nf,v3,1/1] bridge: br_netfilter: pin bridge device while NFQUEUE holds fake dst - 1 - - --- 2026-06-04 Ren Wei New
[nf,v4,1/1] bridge: br_netfilter: pin bridge device while NFQUEUE holds fake dst [nf,v4,1/1] bridge: br_netfilter: pin bridge device while NFQUEUE holds fake dst - 1 - - --- 2026-06-06 Ren Wei New
[nf,v5,1/1] bridge: br_netfilter: pin bridge device while NFQUEUE holds fake dst [nf,v5,1/1] bridge: br_netfilter: pin bridge device while NFQUEUE holds fake dst - 1 - - --- 2026-06-08 Ren Wei New
[nf-next,1/2] netfilter: nfnetlink_queue: restrict writes to network header netfilter: add restrictions/validations for packet rewrite - - - - --- 2026-06-05 Florian Westphal New
[nf-next,1/6] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags add refcount to ct timeout/helper - 1 - - --- 2026-05-26 Pablo Neira Ayuso New
[nf-next,2/2] netfilter: nftables: restrict linklayer and network header writes netfilter: add restrictions/validations for packet rewrite - - - - --- 2026-06-05 Florian Westphal New
[nf-next,v2,1/2] netfilter: flowtable: update netdev stats with HW_OFFLOAD flows Update (DSA) netdev stats with offloaded flows - - - - --- 2026-03-24 Ahmed Zaki Needs Review / ACK
[nf-next,v2,1/3] netfilter: nfnetlink_queue: restrict writes to network header [nf-next,v2,1/3] netfilter: nfnetlink_queue: restrict writes to network header - - - - --- 2026-06-08 Florian Westphal New
[nf-next,v2,2/2] net: dsa: update net_device stats with HW offloaded flows stats Update (DSA) netdev stats with offloaded flows - - - - --- 2026-03-24 Ahmed Zaki Needs Review / ACK
[nf-next,v2,2/3] netfilter: nftables: restrict linklayer and network header writes netfilter: add restrictions/validations for packet rewrite - - - - --- 2026-06-08 Florian Westphal New
[nf-next,v2,3/3] netfilter: nftables: restrict checkum update offset netfilter: add restrictions/validations for packet rewrite - - - - --- 2026-06-08 Florian Westphal New
[nf-next,v2] netfilter: nfnetlink_hook: Dump nat type chains [nf-next,v2] netfilter: nfnetlink_hook: Dump nat type chains - - - - --- 2026-03-20 Phil Sutter Under Review
[nf-next,v3,1/6] net: netfilter: Add ether_type to net_device_path_ctx Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,2/6] net: netfilter: Add encap_proto to flow_offload_tunnel Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,3/6] net: netfilter: Add IPv4 over IPv6 tunnel flowtable acceleration Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,4/6] selftests: netfilter: nft_flowtable.sh: Add IPv4 over IPv6 flowtable selftest Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,5/6] net: netfilter: Add SIT tunnel flowtable acceleration Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,6/6] netfilter: nat: clean up nf_nat_bysource in module exit path [nf-next,v3,1/6] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 1 - - --- 2026-06-02 Pablo Neira Ayuso New
[nf-next,v3,6/6] selftests: netfilter: nft_flowtable.sh: Add SIT flowtable selftest Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v4,1/5] netfilter: nf_conncount: callers must hold rcu read lock netfilter: nf_conncount: fix gc and rbtree bugs - 1 - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,2/5] netfilter: nf_conncount: use per nf_conncount_data spinlocks netfilter: nf_conncount: fix gc and rbtree bugs - - - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,3/5] netfilter: nf_conncount: split count_tree_node rbtree walk into helper netfilter: nf_conncount: fix gc and rbtree bugs - - - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,4/5] netfilter: nf_conncount: add sequence counter to detect tree modifications netfilter: nf_conncount: fix gc and rbtree bugs - - - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,5/5] netfilter: nf_conncount: gc and rcu fixes netfilter: nf_conncount: fix gc and rbtree bugs - 1 - - --- 2026-06-05 Florian Westphal New
[nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 2 - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,2/7] netfilter: nf_conntrack_helper: dynamically allocate struct nf_conntrack_helper [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - - - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,3/7] netfilter: nf_conntrack_pptp: move GRE specific cleanup to GRE tracker [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - - - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,4/7] netfilter: nf_conntrack_helper: add refcounting from datapath [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - - - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,5/7] netfilter: conntrack: revert ct extension genid infrastructure [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 1 - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,6/7] netfilter: conntrack: call nf_ct_gre_keymap_destroy() if master helper is pptp [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 1 - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,7/7] netfilter: ctnetlink: call helper->destroy() when unhelping conntrack [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 1 - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5] netfilter: nf_tables: add math expression support [nf-next,v5] netfilter: nf_tables: add math expression support - - - - --- 2026-04-21 Fernando Fernandez Mancera New
[nf-next] netfilter: flowtable: remove inline segmentation [nf-next] netfilter: flowtable: remove inline segmentation - - - - --- 2026-06-03 Qingfang Deng New
[nf-next] netfilter: flowtable_offload: propagate CT mark to hardware offload path [nf-next] netfilter: flowtable_offload: propagate CT mark to hardware offload path - - - - --- 2026-04-29 Lorenzo Bianconi New
[nf-next] netfilter: nf_reject_ipv6: do not reject ICMPv6 Redirect with an ICMPv6 error [nf-next] netfilter: nf_reject_ipv6: do not reject ICMPv6 Redirect with an ICMPv6 error - - - - --- 2026-06-08 Sayooj K Karun New
[nf-next] netfilter: nfnetlink_osf: fix mss parsing on big-endian architectures [nf-next] netfilter: nfnetlink_osf: fix mss parsing on big-endian architectures - 1 - - --- 2026-05-25 Fernando Fernandez Mancera New
[nf] netfilter: bridge: ebt_redirect: don't assume bridge port exists [nf] netfilter: bridge: ebt_redirect: don't assume bridge port exists - 1 - - --- 2026-06-01 Florian Westphal Under Review
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection [nf] netfilter: conntrack: correct sequence on reinitialized TCP connection - 1 - - --- 2025-02-20 Pablo Neira Ayuso New
« 1 2 »