Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| Archived =
No
| 117 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
demarchi
ms
bhundven
chbs
kengyu
kadlec
regit
jabk
laforge
laforge
tonyb
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
mrchuck
vineetg76
computersforpeace
patrick_delaunay
Noltari
Noltari
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
mkresin
mkresin
thess
thess
fbarrat
fbarrat
phil
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
ajd
darball1
sammj
jogo
jogo
bhelgaas
blogic
blogic
oohal
russellb
ptomsich
agraf
joestringer
mwalle
naveen
pchotard
pepe2k
pepe2k
tagr
tagr
tagr
arj
arj
davem
davem
davem
andmur01
jforissier
amitay
matttbe
pabeni
istokes
aparcar
goliath
martineau
maddy
Ansuel
danielschwierzeck
tytso
mariosix
dcaratti
aserdean
ovsrobot
ovsrobot
XiaoYang
marex
mkorpershoek
hs
khem
tpetazzoni
liwang
danielhb
groug
npiggin
robimarko
apritzel
pareddja
mmichelson
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
dsa
jstancek
pm215
bpf
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
0andriy
981213
narmstrong
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
monstr
blocktrron
vigneshr
mraynal
chunkeey
stewart
stewart
wsa
kabel
Jaehoon
prom
kevery
rfried
freenix
akumar
jagan
arbab
rsalvaterra
adrianschmutzler
horms
hegdevasant
hegdevasant
jacmet
sjg
ehristev
ukleinek
ukleinek
bmeng
ag
rmilecki
rmilecki
metan
xypron
ivanhu
wbx
chleroy
apconole
pablo
pablo
abelloni
rw
rw
legoater
legoater
legoater
svanheule
trini
juju
bjonglez
xback
xback
richiejp
aik
dangole
dangole
pevik
jonhunter
ynezz
sbabic
sbabic
Hauke
Hauke
anuppatel
anuppatel
echaudron
forty
next_ghost
acer
benh
rgrimm
segher
pratyush
passgat
jms
jms
jms
jmberg
mans0n
ruscur
linusw
linusw
jk
jk
jk
jk
festevam
numans
ymorin
Andes
xuyang
conchuod
tambarus
kubu
matthias_bgg
imaximets
apalos
pbrobinson
strlen
strlen
spectrum
stroese
dceara
krzk
cazzacarna
neocturne
aldot
TIENFONG
mpe
sfr
galak
arnout
ktraynor
calebccff
nbd
nbd
anguy11
paulus
robh
jm
Apply
«
1
2
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
NETFILTER: Fix typo in nf_conntrack_l4proto.h comment
NETFILTER: Fix typo in nf_conntrack_l4proto.h comment
- - - -
-
-
-
2024-11-28
caivive (Weibiao Tu)
New
[6.6.y] netfilter: nf_tables: use timestamp to check for set element timeout
[6.6.y] netfilter: nf_tables: use timestamp to check for set element timeout
- 1 - -
-
-
-
2025-03-17
jianqi.ren.cn@windriver.com
New
[ipset,1/2] Correct typo in man-page
[ipset,1/2] Correct typo in man-page
- - - -
-
-
-
2025-02-07
Jeremy Sowden
New
[ipset,2/2] bash-completion: restore fix for syntax error
[ipset,1/2] Correct typo in man-page
- 1 - -
-
-
-
2025-02-07
Jeremy Sowden
New
[iptables,v2,1/8] nft: Make add_log() static
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,2/8] nft: ruleparse: Introduce nft_parse_rule_expr()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,3/8] nft: __add_{match,target}() can't fail
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,4/8] nft: Introduce UDATA_TYPE_COMPAT_EXT
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,5/8] nft-ruleparse: Fallback to compat expressions in userdata
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,6/8] nft: Pass nft_handle into add_{action,match}()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,7/8] nft: Embed compat extensions in rule userdata
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,8/8] tests: iptables-test: Add nft-compat variant
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables] xshared: Fix for extra --list options with --zero
[iptables] xshared: Fix for extra --list options with --zero
- 1 - -
-
-
-
2025-01-10
Phil Sutter
New
[libnetfilter_queue,1/1] src: add nfq_socket_sendto() - send config request and check response
src: add nfq_socket_sendto() - send config request and check response
- - - -
-
-
-
2023-12-11
Duncan Roe
New
[libnetfilter_queue,v3,01/15] src: Convert nfq_open() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,02/15] src: Convert nfq_open_nfnl() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,03/15] src: Convert nfq_close() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,04/15] src: Convert nfq_create_queue(), nfq_bind_pf() & nfq_unbind_pf() to u…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,05/15] src: Convert nfq_set_queue_flags(), nfq_set_queue_maxlen() & nfq_set_…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,06/15] src: Convert nfq_handle_packet(), nfq_get_secctx(), nfq_get_payload()…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,07/15] src: Convert nfq_set_verdict() and nfq_set_verdict2() to use libmnl i…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,08/15] src: Incorporate nfnl_rcvbufsiz() in libnetfilter_queue
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,09/15] src: Convert nfq_fd() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,10/15] src: Convert remaining nfq_* functions to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,11/15] src: Copy nlif-related files from libnfnetlink
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,12/15] doc: Add iftable.c to the doxygen system
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,13/15] src: Convert all nlif_* functions to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,14/15] include: Use libmnl.h instead of libnfnetlink.h
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,15/15] build: Remove libnfnetlink from the build
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnftnl,1/4] include: utils.h needs errno.h
Support wildcard netdev hooks and events
- 1 - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,2/4] utils: Add helpers for interface name wildcards
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,3/4] utils: Introduce nftnl_parse_str_attr()
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,4/4] device: Introduce nftnl_device
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl] set: dump set backend name (hash, rbtree...) and elem count, if available
[libnftnl] set: dump set backend name (hash, rbtree...) and elem count, if available
- - - -
-
-
-
2024-11-20
Florian Westphal
New
[net-next,07/18] netfilter: nft_inner: Use nested-BH locking for nft_pcpu_tun_ctx.
Untitled series #447677
- - - -
-
-
-
2025-03-09
Sebastian Andrzej Siewior
New
[net-next,08/18] netfilter: nf_dup_netdev: Move the recursion counter struct netdev_xmit.
Untitled series #447677
- - - -
-
-
-
2025-03-09
Sebastian Andrzej Siewior
New
[net-next,1/3] net/smc: convert timeouts to secs_to_jiffies()
Converge on using secs_to_jiffies() part two
- - - -
-
-
-
2025-02-19
Easwar Hariharan
New
[net-next,2/3] netfilter: xt_IDLETIMER: convert timeouts to secs_to_jiffies()
Converge on using secs_to_jiffies() part two
- - - -
-
-
-
2025-02-19
Easwar Hariharan
New
[net-next,3/3] net: ipconfig: convert timeouts to secs_to_jiffies()
Converge on using secs_to_jiffies() part two
- - - -
-
-
-
2025-02-19
Easwar Hariharan
New
[net-next,v2,1/3] netfilter: Make xt_table::private RCU protected.
Replace xt_recseq with u64_stats.
- - - -
-
-
-
2025-02-21
Sebastian Andrzej Siewior
New
[net-next,v2,2/3] netfilter: Split the xt_counters type between kernel and user.
Replace xt_recseq with u64_stats.
- - - -
-
-
-
2025-02-21
Sebastian Andrzej Siewior
New
[net-next,v2,3/3] netfilter: Use u64_stats for counters in xt_counters_k.
Replace xt_recseq with u64_stats.
- - - -
-
-
-
2025-02-21
Sebastian Andrzej Siewior
New
[net-next] selftest:net: fixed spelling mistakes
[net-next] selftest:net: fixed spelling mistakes
- - 1 -
-
-
-
2025-02-17
Andres Urian Florez
New
[next,NETFILTER] : nf_conntrack_h323: Fix spelling mistake "authenticaton" -> "authentication"
[next,NETFILTER] : nf_conntrack_h323: Fix spelling mistake "authenticaton" -> "authentication"
- - 1 -
-
-
-
2025-02-27
Colin Ian King
New
[nf-next,v2,3/3] selftests: netfilter: flowtable vlan filtering bridge support
[nf-next,v2,1/3] nf_flow_table_offload: offload the vlan encap in the flowtable
- - - -
-
-
-
2022-05-26
wenxu@chinatelecom.cn
pablo
Under Review
[nf-next,v7,1/6] netfilter: nf_tables: Flowtable hook's pf value never varies
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,2/6] netfilter: nf_tables: Store user-defined hook ifname
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,3/6] netfilter: nf_tables: Use stored ifname in netdev hook dumps
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,4/6] netfilter: nf_tables: Compare netdev hooks based on stored name
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,5/6] netfilter: nf_tables: Tolerate chains with no remaining hooks
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,6/6] netfilter: nf_tables: Simplify chain netdev notifier
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next] netfilter: fib: avoid lookup if socket is available
[nf-next] netfilter: fib: avoid lookup if socket is available
- - - -
-
-
-
2025-02-20
Florian Westphal
New
[nf-next] netfilter: nf_tables: export set count and backend name to userspace
[nf-next] netfilter: nf_tables: export set count and backend name to userspace
- - - -
-
-
-
2024-11-20
Florian Westphal
New
[nf-next] netfilter: nft_byteorder: remove multi-register support
[nf-next] netfilter: nft_byteorder: remove multi-register support
- 1 - -
-
-
-
2024-02-14
Florian Westphal
New
[nf-next] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc
[nf-next] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc
- - 1 -
-
-
-
2025-01-26
Denis Kirjanov
New
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection
- 1 - -
-
-
-
2025-02-20
Pablo Neira Ayuso
New
[nf] netfilter: restore default behavior for nf_conntrack_events
[nf] netfilter: restore default behavior for nf_conntrack_events
- 1 - -
-
-
-
2024-06-04
Nicolas Dichtel
New
[nft,1/2] tests/py: prepare for set debug change
[nft,1/2] tests/py: prepare for set debug change
- - - -
-
-
-
2024-11-20
Florian Westphal
New
[nft,2/2,v2] tests/shell: have .json-nft dumps prettified to wrap lines
Untitled series #385629
- - - -
-
-
-
2023-12-07
Thomas Haller
New
[nft,2/2] debug: include kernel set information on cache fill
[nft,1/2] tests/py: prepare for set debug change
- - - -
-
-
-
2024-11-20
Florian Westphal
New
[nft,2/5] datatype: don't clone static name/desc strings for datatype
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,3/5] datatype: don't clone datatype in set_datatype_alloc() if byteorder already matches
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,4/5] datatype: extend set_datatype_alloc() to change size
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,5/9] mnl: Support simple wildcards in netdev hooks
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,6/9] parser_bison: Accept ASTERISK_STRING in flowtable_expr_member
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,7/9] tests: shell: Adjust to ifname-based flowtables
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,8/9] tests: monitor: Support running external commands
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,9/9] monitor: Support NFT_MSG_(NEW|DEL)DEV events
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,v2,1/5] build: add basic "check-{local,more,all}" and "build-all" make targets
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,2/5] build: add `make check-build` to run `./tests/build/run-tests.sh`
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,3/5] build: add `make check-tree` to check consistency of source tree
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,4/5] build: cleanup if-blocks for conditional compilation in "Makefile.am"
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,5/5] tests/unit: add unit tests for libnftables
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v5,2/8] netlink_delinearize: refactor stmt_payload_binop_postprocess
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,3/8] netlink_delinearize: add support for processing variable payload statement arguments
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,4/8] evaluate: prevent nested byte-order conversions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,5/8] evaluate: preserve existing binop properties
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,7/8] parser_json: allow RHS mark and payload expressions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,8/8] tests: add tests for binops with variable RHS operands
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft] evaluate: move interval flag compat check after set key evaluation
[nft] evaluate: move interval flag compat check after set key evaluation
- 1 - -
-
-
-
2025-03-17
Florian Westphal
New
[nft] expression: tolerate named set protocol dependency
[nft] expression: tolerate named set protocol dependency
- - - -
-
-
-
2025-03-13
Florian Westphal
New
[nft] limit: Support arbitrary unit values
[nft] limit: Support arbitrary unit values
- - - -
-
-
-
2024-04-13
Phil Sutter
New
[nft] netlink: fix stack buffer overrun when emitting ranged expressions
[nft] netlink: fix stack buffer overrun when emitting ranged expressions
- - - -
-
-
-
2025-03-14
Florian Westphal
New
[nft] src: print set element with multi-word description in single one line
[nft] src: print set element with multi-word description in single one line
- - - -
-
-
-
2025-03-13
Pablo Neira Ayuso
New
[nftables,v2] tools: add a systemd unit for static rulesets
[nftables,v2] tools: add a systemd unit for static rulesets
- - - -
-
-
-
2025-03-08
Jan Engelhardt
New
[nftables] include: fix for musl with iptables v1.8.11
[nftables] include: fix for musl with iptables v1.8.11
- - - -
-
-
-
2024-12-19
Alyssa Ross
New
[v10,nf-next,1/3] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
Add nf_flow_encap_push() for xmit direct
- - 1 -
-
-
-
2025-03-15
Eric Woudstra
New
[v10,nf-next,1/3] netfilter: bridge: Add conntrack double vlan and pppoe
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - 1 -
-
-
-
2025-03-15
Eric Woudstra
New
[v10,nf-next,1/3] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
netfilter: fastpath fixes
- - 1 -
-
-
-
2025-03-15
Eric Woudstra
New
[v10,nf-next,2/3] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
Add nf_flow_encap_push() for xmit direct
- - 1 -
-
-
-
2025-03-15
Eric Woudstra
New
[v10,nf-next,2/3] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - 1 -
-
-
-
2025-03-15
Eric Woudstra
New
[v10,nf-next,2/3] netfilter: nft_flow_offload: No ingress_vlan forward info for dsa user port
netfilter: fastpath fixes
- - 1 -
-
-
-
2025-03-15
Eric Woudstra
New
[v10,nf-next,3/3] bridge: No DEV_PATH_BR_VLAN_UNTAG_HW for dsa foreign
netfilter: fastpath fixes
1 - - -
-
-
-
2025-03-15
Eric Woudstra
New
[v10,nf-next,3/3] netfilter: flow: remove hw_outdev, out.hw_ifindex and out.hw_ifidx
Add nf_flow_encap_push() for xmit direct
- - 1 -
-
-
-
2025-03-15
Eric Woudstra
New
[v10,nf-next,3/3] selftests: netfilter: Add conntrack_bridge.sh
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - - -
-
-
-
2025-03-15
Eric Woudstra
New
[v2] netfilter: Make xt_cgroup independent from net_cls
[v2] netfilter: Make xt_cgroup independent from net_cls
- - - -
-
-
-
2025-03-05
Michal Koutný
New
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
- - - -
-
-
-
2024-03-11
Quan Tian
New
[v3,nft] support for afl++ (american fuzzy lop++) fuzzer
[v3,nft] support for afl++ (american fuzzy lop++) fuzzer
- - - -
-
-
-
2023-12-19
Florian Westphal
New
[v4] net/bridge: Optimizing read-write locks in ebtables.c
[v4] net/bridge: Optimizing read-write locks in ebtables.c
- - - -
-
-
-
2024-09-25
yushengjin
New
[v9,nf,01/15] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-03-05
Eric Woudstra
New
«
1
2
»