Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| Archived =
No
| 108 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
demarchi
ms
bhundven
chbs
kengyu
kadlec
regit
jabk
laforge
laforge
tonyb
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
mrchuck
vineetg76
computersforpeace
patrick_delaunay
Noltari
Noltari
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
mkresin
mkresin
thess
thess
fbarrat
fbarrat
phil
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
ajd
darball1
sammj
jogo
jogo
tagr
tagr
tagr
bhelgaas
blogic
blogic
oohal
russellb
ptomsich
agraf
joestringer
mwalle
naveen
pchotard
pepe2k
pepe2k
arj
arj
davem
davem
davem
andmur01
jforissier
amitay
matttbe
pabeni
istokes
goliath
aparcar
maddy
tytso
martineau
Ansuel
danielschwierzeck
mariosix
dcaratti
aserdean
ovsrobot
ovsrobot
XiaoYang
mkorpershoek
hs
marex
khem
tpetazzoni
liwang
mmichelson
danielhb
groug
apritzel
robimarko
pareddja
npiggin
atishp
netdrv
mkubecek
jstancek
stintel
stintel
jkicinski
cpitchen
dsa
pm215
bpf
jonhunter
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
0andriy
981213
narmstrong
monstr
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
blocktrron
vigneshr
mraynal
chunkeey
stewart
stewart
kevery
kabel
xypron
ag
wsa
rfried
arbab
sjg
akumar
Jaehoon
jagan
ehristev
rsalvaterra
adrianschmutzler
hegdevasant
hegdevasant
jacmet
metan
prom
freenix
bmeng
ukleinek
ukleinek
rmilecki
rmilecki
ivanhu
horms
wbx
pablo
pablo
apconole
svanheule
rw
rw
legoater
legoater
legoater
chleroy
juju
abelloni
trini
bjonglez
ynezz
pevik
sbabic
sbabic
xback
xback
richiejp
aik
dangole
dangole
echaudron
anuppatel
anuppatel
forty
acer
next_ghost
Hauke
Hauke
benh
rgrimm
segher
passgat
pratyush
jms
jms
jms
Andes
mans0n
ruscur
numans
jk
jk
jk
jk
ymorin
festevam
linusw
linusw
jmberg
xuyang
kubu
matthias_bgg
tambarus
conchuod
pbrobinson
dceara
strlen
strlen
spectrum
stroese
krzk
apalos
imaximets
cazzacarna
neocturne
aldot
TIENFONG
sfr
galak
mpe
arnout
ktraynor
calebccff
anguy11
nbd
nbd
robh
paulus
jm
Apply
«
1
2
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[nf-next,v2,3/3] selftests: netfilter: flowtable vlan filtering bridge support
[nf-next,v2,1/3] nf_flow_table_offload: offload the vlan encap in the flowtable
- - - -
-
-
-
2022-05-26
wenxu@chinatelecom.cn
pablo
Under Review
[nft,v5,2/8] netlink_delinearize: refactor stmt_payload_binop_postprocess
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,3/8] netlink_delinearize: add support for processing variable payload statement arguments
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,4/8] evaluate: prevent nested byte-order conversions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,5/8] evaluate: preserve existing binop properties
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,7/8] parser_json: allow RHS mark and payload expressions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,8/8] tests: add tests for binops with variable RHS operands
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,2/5] datatype: don't clone static name/desc strings for datatype
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,3/5] datatype: don't clone datatype in set_datatype_alloc() if byteorder already matches
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,4/5] datatype: extend set_datatype_alloc() to change size
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,v2,1/5] build: add basic "check-{local,more,all}" and "build-all" make targets
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,2/5] build: add `make check-build` to run `./tests/build/run-tests.sh`
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,3/5] build: add `make check-tree` to check consistency of source tree
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,4/5] build: cleanup if-blocks for conditional compilation in "Makefile.am"
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,5/5] tests/unit: add unit tests for libnftables
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,2/2,v2] tests/shell: have .json-nft dumps prettified to wrap lines
Untitled series #385629
- - - -
-
-
-
2023-12-07
Thomas Haller
New
[ulogd] log NAT events using IPFIX
[ulogd] log NAT events using IPFIX
- - - -
-
-
-
2023-12-10
Tomasz Pala
New
[libnetfilter_queue,1/1] src: add nfq_socket_sendto() - send config request and check response
src: add nfq_socket_sendto() - send config request and check response
- - - -
-
-
-
2023-12-11
Duncan Roe
New
Bug in ulogd2 when destroying a stack that failed to start (with fix attached)
Bug in ulogd2 when destroying a stack that failed to start (with fix attached)
- - - -
-
-
-
2023-12-14
Gérald Colangelo
New
ulogd / JSON output / enhancement proposal
ulogd / JSON output / enhancement proposal
- - - -
-
-
-
2023-12-14
Gérald Colangelo
New
[v3,nft] support for afl++ (american fuzzy lop++) fuzzer
[v3,nft] support for afl++ (american fuzzy lop++) fuzzer
- - - -
-
-
-
2023-12-19
Florian Westphal
New
[nf-next] netfilter: nft_byteorder: remove multi-register support
[nf-next] netfilter: nft_byteorder: remove multi-register support
- 1 - -
-
-
-
2024-02-14
Florian Westphal
New
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
[v3,nf-next,1/2] netfilter: nf_tables: use struct nlattr * to store userdata for nft_table
- - - -
-
-
-
2024-03-11
Quan Tian
New
[nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown
[nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown
- 1 - -
-
-
-
2024-03-20
Pablo Neira Ayuso
New
[nf,2/2] netfilter: flowtable: use UDP timeout after flow teardown
[nf,1/2] netfilter: flowtable: infer TCP state and timeout before flow teardown
- 1 - -
-
-
-
2024-03-20
Pablo Neira Ayuso
New
[nft] limit: Support arbitrary unit values
[nft] limit: Support arbitrary unit values
- - - -
-
-
-
2024-04-13
Phil Sutter
New
[nf] netfilter: restore default behavior for nf_conntrack_events
[nf] netfilter: restore default behavior for nf_conntrack_events
- 1 - -
-
-
-
2024-06-04
Nicolas Dichtel
New
netfilter: conntrack: tcp: do not lower timeout to CLOSE for in-window RSTs
netfilter: conntrack: tcp: do not lower timeout to CLOSE for in-window RSTs
- - - -
-
-
-
2024-07-05
yyxRoy
Under Review
[v4] net/bridge: Optimizing read-write locks in ebtables.c
[v4] net/bridge: Optimizing read-write locks in ebtables.c
- - - -
-
-
-
2024-09-25
yushengjin
New
[libnftnl,1/4] include: utils.h needs errno.h
Support wildcard netdev hooks and events
- 1 - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,2/4] utils: Add helpers for interface name wildcards
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,3/4] utils: Introduce nftnl_parse_str_attr()
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,4/4] device: Introduce nftnl_device
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,5/9] mnl: Support simple wildcards in netdev hooks
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,6/9] parser_bison: Accept ASTERISK_STRING in flowtable_expr_member
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,7/9] tests: shell: Adjust to ifname-based flowtables
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,8/9] tests: monitor: Support running external commands
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,9/9] monitor: Support NFT_MSG_(NEW|DEL)DEV events
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
doc: don't suggest to disable GSO
doc: don't suggest to disable GSO
- 1 - -
-
-
-
2024-10-06
Ronan Pigott
New
[iptables,v2,1/8] nft: Make add_log() static
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,2/8] nft: ruleparse: Introduce nft_parse_rule_expr()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,3/8] nft: __add_{match,target}() can't fail
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,4/8] nft: Introduce UDATA_TYPE_COMPAT_EXT
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,5/8] nft-ruleparse: Fallback to compat expressions in userdata
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,6/8] nft: Pass nft_handle into add_{action,match}()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,7/8] nft: Embed compat extensions in rule userdata
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
[iptables,v2,8/8] tests: iptables-test: Add nft-compat variant
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-10-09
Phil Sutter
New
nf_conntrack_proto_udp: Set ASSURED for NAT_CLASH entries to avoid packets dropped
nf_conntrack_proto_udp: Set ASSURED for NAT_CLASH entries to avoid packets dropped
1 1 - -
-
-
-
2024-10-10
Yadan Fan
New
[libnetfilter_queue,v3,01/15] src: Convert nfq_open() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,02/15] src: Convert nfq_open_nfnl() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,03/15] src: Convert nfq_close() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,04/15] src: Convert nfq_create_queue(), nfq_bind_pf() & nfq_unbind_pf() to u…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,05/15] src: Convert nfq_set_queue_flags(), nfq_set_queue_maxlen() & nfq_set_…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,06/15] src: Convert nfq_handle_packet(), nfq_get_secctx(), nfq_get_payload()…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,07/15] src: Convert nfq_set_verdict() and nfq_set_verdict2() to use libmnl i…
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,08/15] src: Incorporate nfnl_rcvbufsiz() in libnetfilter_queue
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,09/15] src: Convert nfq_fd() to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,10/15] src: Convert remaining nfq_* functions to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,11/15] src: Copy nlif-related files from libnfnetlink
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,12/15] doc: Add iftable.c to the doxygen system
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,13/15] src: Convert all nlif_* functions to use libmnl
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,14/15] include: Use libmnl.h instead of libnfnetlink.h
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[libnetfilter_queue,v3,15/15] build: Remove libnfnetlink from the build
Convert libnetfilter_queue to not need libnfnetlink
- - - -
-
-
-
2024-10-12
Duncan Roe
New
[v2,01/21] netfilter: conntrack: Cleanup timeout definitions
Converge on using secs_to_jiffies()
- - - -
-
-
-
2024-11-15
Easwar Hariharan
New
[nf-next] netfilter: nf_tables: export set count and backend name to userspace
[nf-next] netfilter: nf_tables: export set count and backend name to userspace
- - - -
-
-
-
2024-11-20
Florian Westphal
New
[libnftnl] set: dump set backend name (hash, rbtree...) and elem count, if available
[libnftnl] set: dump set backend name (hash, rbtree...) and elem count, if available
- - - -
-
-
-
2024-11-20
Florian Westphal
New
[nft,1/2] tests/py: prepare for set debug change
[nft,1/2] tests/py: prepare for set debug change
- - - -
-
-
-
2024-11-20
Florian Westphal
New
[nft,2/2] debug: include kernel set information on cache fill
[nft,1/2] tests/py: prepare for set debug change
- - - -
-
-
-
2024-11-20
Florian Westphal
New
NETFILTER: Fix typo in nf_conntrack_l4proto.h comment
NETFILTER: Fix typo in nf_conntrack_l4proto.h comment
- - - -
-
-
-
2024-11-28
caivive (Weibiao Tu)
New
netfilter: nfnetlink_queue: Fix redundant comparison of unsigned value
netfilter: nfnetlink_queue: Fix redundant comparison of unsigned value
- - - -
-
-
-
2024-12-09
Karol Przybylski
New
[nftables] include: fix for musl with iptables v1.8.11
[nftables] include: fix for musl with iptables v1.8.11
- - - -
-
-
-
2024-12-19
Alyssa Ross
New
[nf-next,v2] netfilter: nf_tables: fix set size with rbtree backend
[nf-next,v2] netfilter: nf_tables: fix set size with rbtree backend
- 1 - -
-
-
-
2025-01-06
Pablo Neira Ayuso
New
[nft,1/2] tests: shell: interval sets with size
[nft,1/2] tests: shell: interval sets with size
- - - -
-
-
-
2025-01-06
Pablo Neira Ayuso
New
[nft,2/2] tests: shell: random interval set with size
[nft,1/2] tests: shell: interval sets with size
- - - -
-
-
-
2025-01-06
Pablo Neira Ayuso
New
[nf-next] netfilter: br_netfilter: remove unused conditional and dead code
[nf-next] netfilter: br_netfilter: remove unused conditional and dead code
- - 1 -
-
-
-
2025-01-09
Antoine Tenart
New
[nf-next,v7,1/6] netfilter: nf_tables: Flowtable hook's pf value never varies
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,2/6] netfilter: nf_tables: Store user-defined hook ifname
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,3/6] netfilter: nf_tables: Use stored ifname in netdev hook dumps
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,4/6] netfilter: nf_tables: Compare netdev hooks based on stored name
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,5/6] netfilter: nf_tables: Tolerate chains with no remaining hooks
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[nf-next,v7,6/6] netfilter: nf_tables: Simplify chain netdev notifier
Dynamic hook interface binding part 1
- - - -
-
-
-
2025-01-09
Phil Sutter
New
[iptables] xshared: Fix for extra --list options with --zero
[iptables] xshared: Fix for extra --list options with --zero
- 1 - -
-
-
-
2025-01-10
Phil Sutter
New
[nft] parser_bison: simplify syntax to list all sets in table
[nft] parser_bison: simplify syntax to list all sets in table
- - - -
-
-
-
2025-01-11
Pablo Neira Ayuso
New
ulogd: out of bounds array access in ulogd_filter_HWHDR
ulogd: out of bounds array access in ulogd_filter_HWHDR
- - - -
-
-
-
2025-01-13
James Dingwall
New
[nft] parser_bison: compact and simplify list and reset syntax
[nft] parser_bison: compact and simplify list and reset syntax
- - - -
-
-
-
2025-01-16
Florian Westphal
New
net/netfilter: use kvfree_rcu to simplify the code
net/netfilter: use kvfree_rcu to simplify the code
- - 1 -
-
-
-
2025-01-22
lirongqing
New
[nf-next] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc
[nf-next] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc
- - 1 -
-
-
-
2025-01-26
Denis Kirjanov
New
[v2] netfilter: conntrack: Bound nf_conntrack sysctl writes
[v2] netfilter: conntrack: Bound nf_conntrack sysctl writes
- - - -
-
-
-
2025-01-29
Nicolas Bouchinet
New
[v5,net-next,01/14] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,02/14] netfilter: flow: remove hw_outdev, out.hw_ifindex and out.hw_ifidx
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,03/14] netfilter: bridge: Add conntrack double vlan and pppoe
bridge-fastpath and related improvements
- - - -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,04/14] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,05/14] bridge: Add filling forward path from port to port
bridge-fastpath and related improvements
1 - - -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,06/14] net: core: dev: Add dev_fill_bridge_path()
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,07/14] netfilter :nf_flow_table_offload: Add nf_flow_rule_bridge()
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,08/14] netfilter: nf_flow_table_inet: Add nf_flowtable_type flowtable_bridge
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,09/14] netfilter: nft_flow_offload: Add NFPROTO_BRIDGE to validate
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,10/14] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
bridge-fastpath and related improvements
- - - -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,11/14] netfilter: nft_flow_offload: No ingress_vlan forward info for dsa user port
bridge-fastpath and related improvements
- - 1 -
-
-
-
2025-02-04
Eric Woudstra
New
[v5,net-next,12/14] bridge: No DEV_PATH_BR_VLAN_UNTAG_HW for dsa foreign
bridge-fastpath and related improvements
1 - - -
-
-
-
2025-02-04
Eric Woudstra
New
«
1
2
»