Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| Archived =
No
| 136 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
demarchi
ms
bhundven
chbs
kengyu
kadlec
regit
jabk
laforge
laforge
tonyb
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
mrchuck
vineetg76
computersforpeace
Noltari
Noltari
patrick_delaunay
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
mkresin
mkresin
thess
thess
fbarrat
fbarrat
phil
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
darball1
sammj
ajd
jogo
jogo
bhelgaas
blogic
blogic
oohal
russellb
ptomsich
agraf
joestringer
mwalle
naveen
pchotard
pepe2k
pepe2k
arj
arj
davem
davem
davem
tagr
tagr
tagr
andmur01
amitay
matttbe
pabeni
istokes
aparcar
Ansuel
goliath
martineau
tytso
danielschwierzeck
maddy
mariosix
dcaratti
aserdean
ovsrobot
ovsrobot
XiaoYang
tpetazzoni
hs
marex
khem
mkorpershoek
liwang
mmichelson
danielhb
groug
robimarko
apritzel
pareddja
npiggin
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
dsa
jstancek
pm215
bpf
jonhunter
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
0andriy
981213
narmstrong
monstr
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
blocktrron
vigneshr
juju
mraynal
chunkeey
stewart
stewart
kevery
kabel
metan
ivanhu
akumar
arbab
rfried
sjg
ag
wsa
xypron
freenix
rsalvaterra
adrianschmutzler
jacmet
hegdevasant
hegdevasant
jagan
Jaehoon
ehristev
bmeng
rmilecki
rmilecki
horms
prom
ukleinek
ukleinek
trini
chleroy
apconole
wbx
rw
rw
legoater
legoater
legoater
pablo
pablo
svanheule
abelloni
bjonglez
ynezz
sbabic
sbabic
aik
pevik
xback
xback
richiejp
dangole
dangole
echaudron
next_ghost
forty
anuppatel
anuppatel
Hauke
Hauke
acer
benh
rgrimm
segher
pratyush
passgat
jms
jms
jms
jmberg
mans0n
ruscur
Andes
ymorin
numans
xuyang
linusw
linusw
festevam
jk
jk
jk
jk
conchuod
kubu
tambarus
matthias_bgg
spectrum
pbrobinson
apalos
stroese
krzk
imaximets
dceara
strlen
strlen
cazzacarna
neocturne
aldot
TIENFONG
mpe
sfr
galak
arnout
ktraynor
nbd
nbd
robh
anguy11
paulus
calebccff
jm
Apply
«
1
2
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[libnftnl,v3] Introduce struct nftnl_str_array
[libnftnl,v3] Introduce struct nftnl_str_array
- - - -
-
-
-
2024-10-29
Phil Sutter
New
[iptables] tests: shell: Fix for 'make distcheck'
[iptables] tests: shell: Fix for 'make distcheck'
- - - -
-
-
-
2024-10-29
Phil Sutter
New
[nft] tests: shell: move device to different namespace
[nft] tests: shell: move device to different namespace
- - - -
-
-
-
2024-10-28
Pablo Neira Ayuso
New
[nf,v2] netfilter: nf_tables: wait for rcu grace period on net_device removal
[nf,v2] netfilter: nf_tables: wait for rcu grace period on net_device removal
- 1 - -
-
-
-
2024-10-28
Pablo Neira Ayuso
New
[nf-next] netfilter: conntrack: collect start time as early as possible
[nf-next] netfilter: conntrack: collect start time as early as possible
- 1 - -
-
-
-
2024-10-26
Florian Westphal
New
[nf-next,7/7] netfilter: nf_tables: must hold rcu read lock while iterating object type list
netfilter: nf_tables: avoid PROVE_RCU_LIST splats
- 1 - -
-
-
-
2024-10-25
Florian Westphal
New
[nf-next,6/7] netfilter: nf_tables: must hold rcu read lock while iterating expression type list
netfilter: nf_tables: avoid PROVE_RCU_LIST splats
- 1 - -
-
-
-
2024-10-25
Florian Westphal
New
[nf-next,5/7] netfilter: nf_tables: avoid false-positive lockdep splats with basechain hook
netfilter: nf_tables: avoid PROVE_RCU_LIST splats
- - - -
-
-
-
2024-10-25
Florian Westphal
New
[nf-next,4/7] netfilter: nf_tables: avoid false-positive lockdep splats in set walker
netfilter: nf_tables: avoid PROVE_RCU_LIST splats
- - - -
-
-
-
2024-10-25
Florian Westphal
New
[nf-next,3/7] netfilter: nf_tables: avoid false-positive lockdep splats with flowtables
netfilter: nf_tables: avoid PROVE_RCU_LIST splats
- - - -
-
-
-
2024-10-25
Florian Westphal
New
[nf-next,2/7] netfilter: nf_tables: avoid false-positive lockdep splats with sets
netfilter: nf_tables: avoid PROVE_RCU_LIST splats
- - - -
-
-
-
2024-10-25
Florian Westphal
New
[nf-next,1/7] netfilter: nf_tables: avoid false-positive lockdep splat on rule deletion
netfilter: nf_tables: avoid PROVE_RCU_LIST splats
- 1 - 1
-
-
-
2024-10-25
Florian Westphal
New
[nf] netfilter: nf_reject_ipv6: fix potential crash in nf_send_reset6()
[nf] netfilter: nf_reject_ipv6: fix potential crash in nf_send_reset6()
- 1 - -
-
-
-
2024-10-25
Eric Dumazet
New
[nft] src: allow to map key to nfqueue number
[nft] src: allow to map key to nfqueue number
- - - -
-
-
-
2024-10-25
Florian Westphal
New
[for-next,4/7] selftests/net: Add missing gitignore file
Untitled series #429687
- - - -
-
-
-
2024-10-25
Li Zhijian
New
[net,v2] net: netfilter: Fix use-after-free in get_info()
[net,v2] net: netfilter: Fix use-after-free in get_info()
- 1 1 -
-
-
-
2024-10-24
dongchenchen (A)
New
[libnftnl,v2] Introduce struct nftnl_str_array
[libnftnl,v2] Introduce struct nftnl_str_array
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[libnftnl] Use SPDX License Identifiers in headers
[libnftnl] Use SPDX License Identifiers in headers
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[nf-next,v6,7/7] netfilter: nf_tables: Drop __nft_unregister_flowtable_net_hooks()
Dynamic hook interface binding part 1
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[nf-next,v6,6/7] netfilter: nf_tables: Simplify chain netdev notifier
Dynamic hook interface binding part 1
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[nf-next,v6,5/7] netfilter: nf_tables: Tolerate chains with no remaining hooks
Dynamic hook interface binding part 1
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[nf-next,v6,4/7] netfilter: nf_tables: Compare netdev hooks based on stored name
Dynamic hook interface binding part 1
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[nf-next,v6,3/7] netfilter: nf_tables: Use stored ifname in netdev hook dumps
Dynamic hook interface binding part 1
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[nf-next,v6,2/7] netfilter: nf_tables: Store user-defined hook ifname
Dynamic hook interface binding part 1
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[nf-next,v6,1/7] netfilter: nf_tables: Flowtable hook's pf value never varies
Dynamic hook interface binding part 1
- - - -
-
-
-
2024-10-23
Phil Sutter
New
[iptables,v3] tests: iptables-test: extend coverage for ip6tables
[iptables,v3] tests: iptables-test: extend coverage for ip6tables
- - - -
-
-
-
2024-10-22
Pablo Neira Ayuso
New
[net] selftests: netfilter: nft_flowtable.sh: make first pass deterministic
[net] selftests: netfilter: nft_flowtable.sh: make first pass deterministic
- - 1 -
-
-
-
2024-10-22
Florian Westphal
New
[iptables] tests: iptables-test: Fix for duplicate supposed-to-fail errors
[iptables] tests: iptables-test: Fix for duplicate supposed-to-fail errors
- 1 - -
-
-
-
2024-10-22
Phil Sutter
New
[nft] tests: shell: don't rely on writable test directory
[nft] tests: shell: don't rely on writable test directory
- - - -
-
-
-
2024-10-22
Florian Westphal
New
selftests: netfilter: remove unused parameter
selftests: netfilter: remove unused parameter
- - - -
-
-
-
2024-10-21
Liu Jing
New
[nf-next] netfilter: bpf: Pass string literal as format argument of request_module()
[nf-next] netfilter: bpf: Pass string literal as format argument of request_module()
- - 2 -
-
-
-
2024-10-18
Simon Horman
New
[nf-next,v3,5/5] netfilter: nf_tables: allocate element update information dynamically
netfilter: nf_tables: reduce set element transaction size
- - - -
-
-
-
2024-10-16
Florian Westphal
New
[nf-next,v3,4/5] netfilter: nf_tables: switch trans_elem to real flex array
netfilter: nf_tables: reduce set element transaction size
- - - -
-
-
-
2024-10-16
Florian Westphal
New
[nf-next,v3,3/5] netfiler: nf_tables: preemitve fix for audit failure
netfilter: nf_tables: reduce set element transaction size
- - - -
-
-
-
2024-10-16
Florian Westphal
New
[nf-next,v3,2/5] netfilter: nf_tables: prepare for multiple elements in nft_trans_elem structure
netfilter: nf_tables: reduce set element transaction size
- - - -
-
-
-
2024-10-16
Florian Westphal
New
[nf-next,v3,1/5] netfilter: nf_tables: add nft_trans_commit_list_add_elem helper
netfilter: nf_tables: reduce set element transaction size
- - - -
-
-
-
2024-10-16
Florian Westphal
New
[RFC,v1,net-next,12/12] netfilter: nft_flow_offload: Add bridgeflow to nft_flow_offload_eval()
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,11/12] bridge: br_vlan_fill_forward_path_mode no _UNTAG_HW for dsa
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,10/12] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,09/12] netfilter: nft_flow_offload: Add NFPROTO_BRIDGE to validate
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,08/12] netfilter: nf_flow_table_inet: Add nf_flowtable_type flowtable_bridge
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,07/12] netfilter :nf_flow_table_offload: Add nf_flow_rule_bridge()
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,06/12] net: core: dev: Add dev_fill_bridge_path()
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,05/12] bridge: br_fill_forward_path add port to port
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,04/12] bridge: br_vlan_fill_forward_path_pvid: Add port to port
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,03/12] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,02/12] netfilter: bridge: Add conntrack double vlan and pppoe
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[RFC,v1,net-next,01/12] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
bridge-fastpath and related improvements
- - - -
-
-
-
2024-10-13
Eric Woudstra
New
[libnetfilter_queue,v3,15/15] build: Remove libnfnetlink from the build
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,14/15] include: Use libmnl.h instead of libnfnetlink.h
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,13/15] src: Convert all nlif_* functions to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,12/15] doc: Add iftable.c to the doxygen system
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,11/15] src: Copy nlif-related files from libnfnetlink
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,10/15] src: Convert remaining nfq_* functions to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,09/15] src: Convert nfq_fd() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,08/15] src: Incorporate nfnl_rcvbufsiz() in libnetfilter_queue
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,07/15] src: Convert nfq_set_verdict() and nfq_set_verdict2() to use libmnl i…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,06/15] src: Convert nfq_handle_packet(), nfq_get_secctx(), nfq_get_payload()…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,05/15] src: Convert nfq_set_queue_flags(), nfq_set_queue_maxlen() & nfq_set_…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,04/15] src: Convert nfq_create_queue(), nfq_bind_pf() & nfq_unbind_pf() to u…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,03/15] src: Convert nfq_close() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,02/15] src: Convert nfq_open_nfnl() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,01/15] src: Convert nfq_open() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[net] netfilter: nf_tables: Fix memory leak in nf_flow_offload_xdp_setup()
[net] netfilter: nf_tables: Fix memory leak in nf_flow_offload_xdp_setup()
- 1 - -
-
-
-
2024-10-10
Lorenzo Bianconi
New
[nft] doc: extend description of fib expression
[nft] doc: extend description of fib expression
- - - -
-
-
-
2024-10-10
Florian Westphal
New
nf_conntrack_proto_udp: Set ASSURED for NAT_CLASH entries to avoid packets dropped
nf_conntrack_proto_udp: Set ASSURED for NAT_CLASH entries to avoid packets dropped
1 1 - -
-
-
-
2024-10-10
Yadan Fan
New
[iptables,v2,8/8] tests: iptables-test: Add nft-compat variant
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,7/8] nft: Embed compat extensions in rule userdata
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,6/8] nft: Pass nft_handle into add_{action,match}()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,5/8] nft-ruleparse: Fallback to compat expressions in userdata
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,4/8] nft: Introduce UDATA_TYPE_COMPAT_EXT
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,3/8] nft: __add_{match,target}() can't fail
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,2/8] nft: ruleparse: Introduce nft_parse_rule_expr()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,1/8] nft: Make add_log() static
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
doc: don't suggest to disable GSO
doc: don't suggest to disable GSO
- 1 - -
-
-
-
2024-10-06
Ronan Pigott
New
[nft,9/9] monitor: Support NFT_MSG_(NEW|DEL)DEV events
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,8/9] tests: monitor: Support running external commands
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,7/9] tests: shell: Adjust to ifname-based flowtables
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,6/9] parser_bison: Accept ASTERISK_STRING in flowtable_expr_member
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,5/9] mnl: Support simple wildcards in netdev hooks
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,4/9] tests: monitor: Run in own netns
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,3/9] monitor: Recognize flowtable add/del events
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,2/9] tests: py: Fix for storing payload into missing file
Support wildcard netdev hooks and events
- 1 - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,1/9] json: Support typeof in set and map types
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,4/4] device: Introduce nftnl_device
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,3/4] utils: Introduce nftnl_parse_str_attr()
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,2/4] utils: Add helpers for interface name wildcards
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,1/4] include: utils.h needs errno.h
Support wildcard netdev hooks and events
- 1 - -
-
-
-
2024-10-02
Phil Sutter
New
[v4] net/bridge: Optimizing read-write locks in ebtables.c
[v4] net/bridge: Optimizing read-write locks in ebtables.c
- - - -
-
-
-
2024-09-25
yushengjin
New
[nf-next,7/7] netfilter: nft_flow_offload: do not remove flowtable entry for fin packets
netfilter: rework conntrack/flowtable interaction
- - - -
-
-
-
2024-09-24
Florian Westphal
New
[nf-next,6/7] netfilter: nft_flow_offload: never grow the timeout when moving packets back to slowp…
netfilter: rework conntrack/flowtable interaction
- - - -
-
-
-
2024-09-24
Florian Westphal
New
[nf-next,5/7] netfilter: conntrack: rework offload nf_conn timeout extension logic
netfilter: rework conntrack/flowtable interaction
- - - -
-
-
-
2024-09-24
Florian Westphal
New
[nf-next,4/7] netfilter: flowtable: prefer plain nf_ct_refresh for setting initial timeout
netfilter: rework conntrack/flowtable interaction
- - - -
-
-
-
2024-09-24
Florian Westphal
New
[nf-next,3/7] netfilter: conntrack: remove skb argument from nf_ct_refresh
netfilter: rework conntrack/flowtable interaction
- - - -
-
-
-
2024-09-24
Florian Westphal
New
[nf-next,2/7] netfilter: nft_flow_offload: update tcp state flags under lock
netfilter: rework conntrack/flowtable interaction
- 1 - -
-
-
-
2024-09-24
Florian Westphal
New
[nf-next,1/7] netfilter: nft_flow_offload: clear tcp MAXACK flag before moving to slowpath
netfilter: rework conntrack/flowtable interaction
- - - -
-
-
-
2024-09-24
Florian Westphal
New
netfilter: conntrack: tcp: do not lower timeout to CLOSE for in-window RSTs
netfilter: conntrack: tcp: do not lower timeout to CLOSE for in-window RSTs
- - - -
-
-
-
2024-07-05
yyxRoy
Under Review
[nf] netfilter: restore default behavior for nf_conntrack_events
[nf] netfilter: restore default behavior for nf_conntrack_events
- 1 - -
-
-
-
2024-06-04
Nicolas Dichtel
New
[nft] limit: Support arbitrary unit values
[nft] limit: Support arbitrary unit values
- - - -
-
-
-
2024-04-13
Phil Sutter
New
[nf,2/2] netfilter: flowtable: use UDP timeout after flow teardown
[nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown
- 1 - -
-
-
-
2024-03-20
Pablo Neira Ayuso
New
«
1
2
»