Show patches with: State = Action Required       |    Archived = No       |   133 patches
« 1 2 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[v2,net] netfilter: flowtable: fix offloaded ct timeout never being extended [v2,net] netfilter: flowtable: fix offloaded ct timeout never being extended - 1 - - --- 2026-05-28 Adrian Bente New
[nf-next,v2,2/2] net: dsa: update net_device stats with HW offloaded flows stats Update (DSA) netdev stats with offloaded flows - - - - --- 2026-03-24 Ahmed Zaki Needs Review / ACK
[nf-next,v2,1/2] netfilter: flowtable: update netdev stats with HW_OFFLOAD flows Update (DSA) netdev stats with offloaded flows - - - - --- 2026-03-24 Ahmed Zaki Needs Review / ACK
[nftables] include: fix for musl with iptables v1.8.11 [nftables] include: fix for musl with iptables v1.8.11 - - - - --- 2024-12-19 Alyssa Ross New
[RFC,net-next,4/4] net: ethernet: mtk_eth_soc: report INGRESS_L2 byte_type in flow stats improve hw flow offload byte accounting - - - - --- 2026-04-09 Daniel Golle New
[RFC,net-next,3/4] nf_flow_table: convert hw byte counts and update sub-interface stats improve hw flow offload byte accounting - - - - --- 2026-04-09 Daniel Golle New
[RFC,net-next,2/4] nf_flow_table: track sub-interface and bridge ifindex in flow tuple improve hw flow offload byte accounting - - - - --- 2026-04-09 Daniel Golle New
[RFC,net-next,1/4] net: flow_offload: let drivers report byte counter semantics improve hw flow offload byte accounting - - - - --- 2026-04-09 Daniel Golle New
netfilter: ipset: harden payload calculation in call_ad() netfilter: ipset: harden payload calculation in call_ad() 1 - - - --- 2026-03-13 David Baum kadlec Under Review
[nf] netfilter: flowtable: fix IP6IP6 tunnel offset double-count with vlan/pppoe encap [nf] netfilter: flowtable: fix IP6IP6 tunnel offset double-count with vlan/pppoe encap 1 1 - - --- 2026-06-04 David Carlier New
[nf] netfilter: flowtable: avoid num_encaps underflow on bridge VLAN untag [nf] netfilter: flowtable: avoid num_encaps underflow on bridge VLAN untag - 1 1 - --- 2026-05-23 David Carlier New
[net-next] net/netfilter/xt_recent: Use strscpy() to copy device name [net-next] net/netfilter/xt_recent: Use strscpy() to copy device name - - - - --- 2026-06-06 David Laight New
[conntrack-tools] conntrackd: remove redundant retry checks [conntrack-tools] conntrackd: remove redundant retry checks - - - - --- 2026-06-02 Denis Ozhigov New
[v5,nf-next] selftests: netfilter: Add bridge_fastpath.sh [v5,nf-next] selftests: netfilter: Add bridge_fastpath.sh - - - - --- 2026-05-12 Eric Woudstra New
[v20,nf-next,2/2] netfilter: bridge: Add conntrack double vlan and pppoe conntrack: bridge: add double vlan, pppoe and pppoe-in-q - - - - --- 2026-05-12 Eric Woudstra New
[v20,nf-next,1/2] netfilter: utils: nf_ip(6)_checksum(_partial) correct data!=networkheader conntrack: bridge: add double vlan, pppoe and pppoe-in-q - - - - --- 2026-05-12 Eric Woudstra New
[v12,nf-next] bridge: Introduce DEV_PATH_BR_VLAN_KEEP_HW [v12,nf-next] bridge: Introduce DEV_PATH_BR_VLAN_KEEP_HW - - - - --- 2026-03-17 Eric Woudstra Needs Review / ACK
[v12,nf-next] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info() [v12,nf-next] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info() - - 1 - --- 2026-03-17 Eric Woudstra Needs Review / ACK
[BUG] KASAN: slab-use-after-free in hash_ipportip6_resize [BUG] KASAN: slab-use-after-free in hash_ipportip6_resize - - - - --- 2026-04-23 Eulgyu Kim New
[9/9,nf-next] netfilter: conncount: use DEBUG_NET_WARN_ON_ONCE on reaching count limit netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[8/9,nf-next] netfilter: flowtable: use DEBUG_NET_WARN_ON_ONCE in offload path netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[7/9,nf-next] netfilter: bpf: use DEBUG_NET_WARN_ON_ONCE for missing BTF structures netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[6/9,nf-next] netfilter: tproxy: use DEBUG_NET_WARN_ON_ONCE for protocol fallbacks netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[5/9,nf-next] netfilter: nat: use DEBUG_NET_WARN_ON_ONCE in core and helper paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[4/9,nf-next] netfilter: conntrack: use DEBUG_NET_WARN_ON_ONCE on packet paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[3/9,nf-next] netfilter: nfnetlink: use DEBUG_NET_WARN_ON_ONCE for attribute validation netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[2/9,nf-next] netfilter: nf_tables: use DEBUG_NET_WARN_ON_ONCE in packet and control paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[1/9,nf-next] netfilter: xtables: use DEBUG_NET_WARN_ON_ONCE in packet and control paths netfilter: replace raw warnings with - - - - --- 2026-06-01 Fernando Fernandez Mancera New
[4/5,nf-next,v4] netfilter: synproxy: protect nf_ct_seqadj_init() with conntrack lock netfilter: synproxy: misc fixes about synproxy core - 1 - - --- 2026-05-26 Fernando Fernandez Mancera New
[3/5,nf-next,v4] netfilter: synproxy: fix unaligned memory access in timestamp adjustment netfilter: synproxy: misc fixes about synproxy core - 1 - - --- 2026-05-26 Fernando Fernandez Mancera New
[2/5,nf-next,v4] netfilter: synproxy: adjust duplicate timestamp options netfilter: synproxy: misc fixes about synproxy core - 1 - - --- 2026-05-26 Fernando Fernandez Mancera New
[1/5,nf-next,v4] netfilter: synproxy: drop packets if timestamp adjustment fails netfilter: synproxy: misc fixes about synproxy core - 1 - - --- 2026-05-26 Fernando Fernandez Mancera New
[nf-next] netfilter: nfnetlink_osf: fix mss parsing on big-endian architectures [nf-next] netfilter: nfnetlink_osf: fix mss parsing on big-endian architectures - 1 - - --- 2026-05-25 Fernando Fernandez Mancera New
[nf,v2] netfilter: nf_conncount: prevent connlimit drops for early confirmed ct [nf,v2] netfilter: nf_conncount: prevent connlimit drops for early confirmed ct - 1 - - --- 2026-05-14 Fernando Fernandez Mancera New
[libnftnl,v4] expr: add support to math expression [libnftnl,v4] expr: add support to math expression - - - - --- 2026-04-21 Fernando Fernandez Mancera New
[nf-next,v5] netfilter: nf_tables: add math expression support [nf-next,v5] netfilter: nf_tables: add math expression support - - - - --- 2026-04-21 Fernando Fernandez Mancera New
[nft,v3] src: add connlimit stateful object support [nft,v3] src: add connlimit stateful object support - - 1 - --- 2025-11-24 Fernando Fernandez Mancera New
[libnftnl] src: add connlimit stateful object support [libnftnl] src: add connlimit stateful object support - - - - --- 2025-11-04 Fernando Fernandez Mancera New
[nf-next,2/2] netfilter: nftables: restrict linklayer and network header writes netfilter: add restrictions/validations for packet rewrite - - - - --- 2026-06-05 Florian Westphal New
[nf-next,1/2] netfilter: nfnetlink_queue: restrict writes to network header netfilter: add restrictions/validations for packet rewrite - - - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,5/5] netfilter: nf_conncount: gc and rcu fixes netfilter: nf_conncount: fix gc and rbtree bugs - 1 - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,4/5] netfilter: nf_conncount: add sequence counter to detect tree modifications netfilter: nf_conncount: fix gc and rbtree bugs - - - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,3/5] netfilter: nf_conncount: split count_tree_node rbtree walk into helper netfilter: nf_conncount: fix gc and rbtree bugs - - - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,2/5] netfilter: nf_conncount: use per nf_conncount_data spinlocks netfilter: nf_conncount: fix gc and rbtree bugs - - - - --- 2026-06-05 Florian Westphal New
[nf-next,v4,1/5] netfilter: nf_conncount: callers must hold rcu read lock netfilter: nf_conncount: fix gc and rbtree bugs - 1 - - --- 2026-06-05 Florian Westphal New
[1/1] netfilter: nf_tables_offload: drop device refcount on error [1/1] netfilter: nf_tables_offload: drop device refcount on error - 1 - - --- 2026-06-05 Florian Westphal New
[nf] netfilter: nf_queue: reinject must revalidate bridge ports [nf] netfilter: nf_queue: reinject must revalidate bridge ports - 1 - - --- 2026-06-02 Florian Westphal New
[nf] selftests: nft_queue.sh: add a bridge queue test [nf] selftests: nft_queue.sh: add a bridge queue test - - - - --- 2026-06-02 Florian Westphal New
[nf] netfilter: bridge: ebt_redirect: don't assume bridge port exists [nf] netfilter: bridge: ebt_redirect: don't assume bridge port exists - 1 - - --- 2026-06-01 Florian Westphal Under Review
[RFC,nf,2/2] netfilter: nftables: restrict linklayer and network header writes netfilter: add restrictions/validations for packet rewrites - - - - --- 2026-05-27 Florian Westphal New
[RFC,nf,1/2] netfilter: nfnetlink_queue: restrict writes to network header netfilter: add restrictions/validations for packet rewrites - - - - --- 2026-05-27 Florian Westphal New
netfilter: flowtable: resolve LAG slave for direct HW offload netfilter: flowtable: resolve LAG slave for direct HW offload - - - - --- 2026-05-25 Jihong Min New
[6/6] netfilter: ipset: add comment how cidr bookkeeping is working netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[5/6] netfilter: ipset: fix potential torn read in reuse/forceadd cases netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[4/6] netfilter: ipset: skip gc when resize is in progress netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[3/6] netfilter: ipset: fix order of kfree_rcu() and rcu_assign_pointer() netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[2/6] netfilter: ipset: Don't use test_bit() in lockless RCU readers in bitmap types netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[1/6] netfilter: ipset: Don't use test_bit() in lockless RCU readers in hash types netfilter: ipset fixes, second batch - - - - --- 2026-05-23 Jozsef Kadlecsik New
[v3,nf-next] ipvs: add conn_max sysctl to limit connections [v3,nf-next] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-05-25 Julian Anastasov New
[v2] netfilter: TCPMSS: fix dropped packets when MSS option is unaligned [v2] netfilter: TCPMSS: fix dropped packets when MSS option is unaligned - - - - --- 2026-05-28 Kacper Kokot New
[nf] netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() [nf] netfilter: flowtable: Validate iph->ihl in nf_flow_ip4_tunnel_proto() - 1 - - --- 2026-06-05 Lorenzo Bianconi New
[nf-next,v3,6/6] selftests: netfilter: nft_flowtable.sh: Add SIT flowtable selftest Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,5/6] net: netfilter: Add SIT tunnel flowtable acceleration Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,4/6] selftests: netfilter: nft_flowtable.sh: Add IPv4 over IPv6 flowtable selftest Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,3/6] net: netfilter: Add IPv4 over IPv6 tunnel flowtable acceleration Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,2/6] net: netfilter: Add encap_proto to flow_offload_tunnel Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next,v3,1/6] net: netfilter: Add ether_type to net_device_path_ctx Add IPv4 over IPv6 and SIT flowtable SW acceleration - - - - --- 2026-05-31 Lorenzo Bianconi New
[nf-next] netfilter: flowtable_offload: propagate CT mark to hardware offload path [nf-next] netfilter: flowtable_offload: propagate CT mark to hardware offload path - - - - --- 2026-04-29 Lorenzo Bianconi New
[v3] ipvs: Replace use of system_unbound_wq with system_dfl_long_wq [v3] ipvs: Replace use of system_unbound_wq with system_dfl_long_wq 1 - - - --- 2026-05-27 Marco Crivellari New
[net] netfilter: nf_nat: avoid invalid nat_net pointer use on failed nf_nat_init() [net] netfilter: nf_nat: avoid invalid nat_net pointer use on failed nf_nat_init() - 1 - - --- 2026-04-28 Mathias Krause New
[nft] json: output set/map element count [nft] json: output set/map element count - - - - --- 2026-04-19 Niklas Fiekas New
[net-next,15/15] netfilter: nf_conntrack: use get_unaligned_be32() in tcp_sack() [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - 1 - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,14/15] netfilter: flowtable: avoid num_encaps underflow on bridge VLAN untag [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 1 - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,13/15] netfilter: conntrack: call nf_ct_gre_keymap_destroy() if master helper is pptp [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,12/15] netfilter: conntrack: revert ct extension genid infrastructure [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,11/15] netfilter: nf_conntrack_helper: add refcounting from datapath [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,10/15] netfilter: nf_conntrack_pptp: move GRE specific cleanup to GRE tracker [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,09/15] netfilter: nf_conntrack_helper: dynamically allocate struct nf_conntrack_helper [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,08/15] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 2 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,07/15] netfilter: synproxy: protect nf_ct_seqadj_init() with conntrack lock [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,06/15] netfilter: synproxy: fix unaligned memory access in timestamp adjustment [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,05/15] netfilter: synproxy: adjust duplicate timestamp options [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,04/15] netfilter: synproxy: drop packets if timestamp adjustment fails [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,03/15] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,02/15] netfilter: nfnetlink_osf: fix mss parsing on big-endian architectures [net-next,01/15] ipvs: add conn_max sysctl to limit connections - 1 - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,01/15] ipvs: add conn_max sysctl to limit connections [net-next,01/15] ipvs: add conn_max sysctl to limit connections - - - - --- 2026-06-07 Pablo Neira Ayuso New
[net-next,00/15] Netfilter/IPVS updates for net-next - - - - --- 2026-06-07 Pablo Neira Ayuso New
[nf-next,v5,7/7] netfilter: ctnetlink: call helper->destroy() when unhelping conntrack [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 1 - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,6/7] netfilter: conntrack: call nf_ct_gre_keymap_destroy() if master helper is pptp [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 1 - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,5/7] netfilter: conntrack: revert ct extension genid infrastructure [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 1 - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,4/7] netfilter: nf_conntrack_helper: add refcounting from datapath [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - - - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,3/7] netfilter: nf_conntrack_pptp: move GRE specific cleanup to GRE tracker [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - - - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,2/7] netfilter: nf_conntrack_helper: dynamically allocate struct nf_conntrack_helper [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - - - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount [nf-next,v5,1/7] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 2 - - --- 2026-06-04 Pablo Neira Ayuso New
[nf-next,v3,6/6] netfilter: nat: clean up nf_nat_bysource in module exit path [nf-next,v3,1/6] netfilter: cttimeout: detach dataplane timeout policy and repurpose refcount - 1 - - --- 2026-06-02 Pablo Neira Ayuso New
[nf-next,1/6] netfilter: nfnetlink_cthelper: use {READ,WRITE}_ONCE for accessing helper flags add refcount to ct timeout/helper - 1 - - --- 2026-05-26 Pablo Neira Ayuso New
[4/3,nf,v4] netfilter: nf_conntrack_helper: call .destroy() when helper is unregistered Untitled series #504819 - 1 - - --- 2026-05-18 Pablo Neira Ayuso New
[nft] cache: honor -c/--check for reset commands [nft] cache: honor -c/--check for reset commands - 1 - - --- 2026-05-11 Pablo Neira Ayuso New
[net,8/8] sched/isolation: Make HK_TYPE_KTHREAD an alias of HK_TYPE_DOMAIN [net,1/8] ipvs: fixes for the new ip_vs_status info - 1 - - --- 2026-05-05 Pablo Neira Ayuso New
[nft,5/5] libnftables: support for several list and reset commands support for several list and reset commands - - - - --- 2026-04-08 Pablo Neira Ayuso New
« 1 2 »