Show patches with: Archived = No       |   31671 patches
« 1 2 3 4316 317 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[nft] tests: shell: add packetpath test for timeout policy overrides [nft] tests: shell: add packetpath test for timeout policy overrides - - - - --- 2026-09-14 Florian Westphal New
[nf-next,v5,3/3] selftests: netfilter: nft_flowtable.sh: roam a host between two bridge ports flow offload teardown when layer 2 roaming - - - - --- 2026-09-14 Julius Bairaktaris New
[nf-next,v5,2/3] netfilter: flowtable: teardown direct xmit flows when the fdb entry moves flow offload teardown when layer 2 roaming - - - - --- 2026-09-14 Julius Bairaktaris New
[nf-next,v5,1/3] netfilter: flow: Add bridge_vid member flow offload teardown when layer 2 roaming - - - - --- 2026-09-14 Julius Bairaktaris New
[net,4/4] netfilter: flowtable: hold reference on ct until flow is released [net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-13 Pablo Neira Ayuso New
[net,3/4] netfilter: nf_nat: unregister and release hooks on error [net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-13 Pablo Neira Ayuso New
[net,2/4] netfilter: nf_tables: fix device name and prefix match in hook lookup [net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-13 Pablo Neira Ayuso New
[net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup [net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-13 Pablo Neira Ayuso New
[net,v2,0/4,RESEND] Netfilter fixes for net - - - - --- 2026-09-13 Pablo Neira Ayuso New
[nf,v2,2/2] netfilter: flowtable: advertise the vlan match in used_keys [nf] netfilter: flowtable: advertise the vlan match in used_keys - 1 - - --- 2026-09-13 Julius Bairaktaris New
[nf,v2,1/2] netfilter: flowtable: fill the vlan key from the outermost tag only netfilter: flowtable: correct and advertise the vlan match - 1 - - --- 2026-09-13 Julius Bairaktaris New
[net,1/1] ipvs: bound twos scheduler destination walks ipvs: bound twos scheduler destination walks - 1 - - --- 2026-09-12 Ren Wei New
[net,v2] net: remove WARN_ON_ONCE() from the dev_fill_forward_path() loop check [net,v2] net: remove WARN_ON_ONCE() from the dev_fill_forward_path() loop check - 2 1 - --- 2026-09-12 Farhad Alemi New
[nf,1/1] ipvs: avoid stack overflow from recursive connection expiration ipvs: avoid stack overflow from recursive connection expiration - 1 - - --- 2026-09-12 zihan xi New
[4/4] selftests: netfilter: ipvs: add per-service secure_tcp test ipvs: add per-service secure_tcp - - - - --- 2026-09-12 Adriano Cordova New
[3/4] ipvs: tcp: enable per-connection secure_tcp in state machine ipvs: add per-service secure_tcp - - - - --- 2026-09-12 Adriano Cordova New
[2/4] ipvs: stamp per-service secure_tcp on new connections ipvs: add per-service secure_tcp - - - - --- 2026-09-12 Adriano Cordova New
[1/4] ipvs: add flags for per-service secure TCP state table ipvs: add per-service secure_tcp - - - - --- 2026-09-12 Adriano Cordova New
[net] netfilter: ctnetlink: fix suspicious RCU usage in expect_iter_name [net] netfilter: ctnetlink: fix suspicious RCU usage in expect_iter_name - 1 - - --- 2026-09-12 Naman Gulati New
[nft] src: release scope symbols by reference count [nft] src: release scope symbols by reference count - 1 - - --- 2026-09-11 Avinash Duduskar Accepted
[nf] ipvs: filter some flags received in the backup server [nf] ipvs: filter some flags received in the backup server - 1 - - --- 2026-09-11 Julian Anastasov New
[nft] tests: shell: drop metainfo from the json dump comparison [nft] tests: shell: drop metainfo from the json dump comparison - - - - --- 2026-09-11 Avinash Duduskar New
[nft,v3] evaluate: reject negative values for unsigned datatypes [nft,v3] evaluate: reject negative values for unsigned datatypes - 1 - - --- 2026-09-11 Avinash Duduskar New
[nf-next] netfilter: conntrack: prevent nf_conntrack_buckets race condition [nf-next] netfilter: conntrack: prevent nf_conntrack_buckets race condition - 1 - - --- 2026-09-11 Fernando Fernandez Mancera New
[v2,nf] ipvs: revalidate ihl before icmp_send [v2,nf] ipvs: revalidate ihl before icmp_send - 1 - - --- 2026-09-11 Julian Anastasov New
[net,4/4] netfilter: flowtable: hold reference on ct until flow is released [net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-11 Pablo Neira Ayuso Superseded
[net,3/4] netfilter: nf_nat: unregister and release hooks on error [net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-11 Pablo Neira Ayuso Superseded
[net,2/4] netfilter: nf_tables: fix device name and prefix match in hook lookup [net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-11 Pablo Neira Ayuso Superseded
[net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup [net,1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-11 Pablo Neira Ayuso Superseded
[net,v2,0/4] Netfilter fixes for net - - - - --- 2026-09-11 Pablo Neira Ayuso Superseded
[nf,v2] netfilter: flowtable: hold reference on ct until flow is released [nf,v2] netfilter: flowtable: hold reference on ct until flow is released - 1 - - --- 2026-09-11 Pablo Neira Ayuso Accepted
[net-next,8/8] netfilter: conncount: use GFP_KERNEL_ACCOUNT [net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-09-11 Pablo Neira Ayuso New
[net-next,7/8] netfilter: nat: use GFP_KERNEL_ACCOUNT [net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-09-11 Pablo Neira Ayuso New
[net-next,6/8] netfilter: sysctl: use GFP_KERNEL_ACCOUNT [net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-09-11 Pablo Neira Ayuso New
[net-next,5/8] netfilter: synproxy: use GFP_KERNEL_ACCOUNT [net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-09-11 Pablo Neira Ayuso New
[net-next,4/8] netfilter: nf_tables: use GFP_KERNEL_ACCOUNT [net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-09-11 Pablo Neira Ayuso New
[net-next,3/8] netfilter: nfnetlink: use GFP_KERNEL_ACCOUNT [net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-09-11 Pablo Neira Ayuso New
[net-next,2/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target [net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-09-11 Pablo Neira Ayuso New
[net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL [net-next,1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL - - - - --- 2026-09-11 Pablo Neira Ayuso New
[net-next,0/8] Netfilter updates for net-next - - - - --- 2026-09-11 Pablo Neira Ayuso New
selftests: netfilter: fix nft_audit.sh auditd detection selftests: netfilter: fix nft_audit.sh auditd detection - - - - --- 2026-09-11 Jin Li New
[net] net: reject a forward path that loops back to the tunnel [net] net: reject a forward path that loops back to the tunnel - 2 - - --- 2026-09-11 Farhad Alemi Changes Requested
netfilter: nft_synproxy: use the family-aware checksum helper netfilter: nft_synproxy: use the family-aware checksum helper - 1 - - --- 2026-09-10 Karl Mehltretter New
[net] netfilter: flowtable: Saturate 16-bit flow_tuple->mtu [net] netfilter: flowtable: Saturate 16-bit flow_tuple->mtu - 1 - - --- 2026-09-10 Alice Mikityanska New
[11/13,net-next] netfilter: ipv4: guard ip_route_me_harder() with CONFIG_IPV4 [01/13,net-next] net: ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack - - - - --- 2026-09-10 Fernando Fernandez Mancera Handled Elsewhere
[01/13,net-next] net: ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack [01/13,net-next] net: ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack 1 - - - --- 2026-09-10 Fernando Fernandez Mancera Handled Elsewhere
[nf-next,v2] netfilter: conntrack: make filtering by zone discoverable [nf-next,v2] netfilter: conntrack: make filtering by zone discoverable - - - - --- 2026-09-10 Ilya Maximets New
[v4,nf,2/2] ipvs: bound LBLCR and LBLC cache growth ipvs: fix LBLC and LBLCR cache growth 1 1 - - --- 2026-09-10 Julian Anastasov New
[v4,nf,1/2] ipvs: fix missing counter decrement in lblc ipvs: fix LBLC and LBLCR cache growth - 1 - - --- 2026-09-10 Julian Anastasov New
[nf-next,4/4] selftests: netfilter: cover a TCP flow whose reply is never seen netfilter: offload a TCP flow whose reply is never seen - - - - --- 2026-09-10 Julius Bairaktaris New
[nf-next,3/4] netfilter: nft_flow_offload: offload a TCP flow that has no reply netfilter: offload a TCP flow whose reply is never seen - - - - --- 2026-09-10 Julius Bairaktaris New
[nf-next,2/4] netfilter: flowtable: promote a flow offloaded in one direction only netfilter: offload a TCP flow whose reply is never seen - - - - --- 2026-09-10 Julius Bairaktaris New
[nf-next,1/4] netfilter: conntrack: pick up a TCP flow whose SYN was never answered netfilter: offload a TCP flow whose reply is never seen - - - 1 --- 2026-09-10 Julius Bairaktaris New
netfilter: nft_flow_offload: drop flowtable reference on init error path netfilter: nft_flow_offload: drop flowtable reference on init error path - 1 - - --- 2026-09-10 Aohan Mei New
[nf,v2] netfilter: nf_tables: skip expired catchall elements on insert and delete [nf,v2] netfilter: nf_tables: skip expired catchall elements on insert and delete - 1 - - --- 2026-09-10 Aohan Mei New
[net-next,7/7] netlink: specs: conntrack: tweak definition of obsolete attrs netlink: specs: conntrack: minor spec fixes - - - - --- 2026-09-10 Jakub Kicinski New
[net-next,6/7] netlink: specs: conntrack: fix the per-CPU stats reply netlink: specs: conntrack: minor spec fixes - - - - --- 2026-09-10 Jakub Kicinski New
[net-next,5/7] netlink: specs: conntrack: describe CTA_HELP_INFO netlink: specs: conntrack: minor spec fixes - - - - --- 2026-09-10 Jakub Kicinski New
[net-next,4/7] netlink: specs: conntrack: fix the nat-attrs attribute IDs netlink: specs: conntrack: minor spec fixes - - - - --- 2026-09-10 Jakub Kicinski New
[net-next,3/7] netlink: specs: conntrack: fix SCTP conntrack state names netlink: specs: conntrack: minor spec fixes - - - - --- 2026-09-10 Jakub Kicinski New
[net-next,2/7] netlink: specs: conntrack: fix the get reply attribute lists netlink: specs: conntrack: minor spec fixes - - - - --- 2026-09-10 Jakub Kicinski New
[net-next,1/7] netlink: specs: conntrack: timestamp is a nest, not a be64 netlink: specs: conntrack: minor spec fixes - - - - --- 2026-09-10 Jakub Kicinski New
[net,7/7] netfilter: hold reference on module during netlink dump [net,1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup - 5 - - --- 2026-09-09 Pablo Neira Ayuso Changes Requested
[net,6/7] netfilter: xt_IDLETIMER: allocate timer with kzalloc() [net,1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-09 Pablo Neira Ayuso Changes Requested
[net,5/7] netfilter: flowtable: hold reference on ct until flow is released [net,1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-09 Pablo Neira Ayuso Changes Requested
[net,4/7] ipvs: revalidate ihl before icmp_send [net,1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup - 2 - - --- 2026-09-09 Pablo Neira Ayuso Changes Requested
[net,3/7] netfilter: nf_nat: unregister and release hooks on error [net,1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-09 Pablo Neira Ayuso Changes Requested
[net,2/7] netfilter: nf_tables: fix device name and prefix match in hook lookup [net,1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-09 Pablo Neira Ayuso Changes Requested
[net,1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup [net,1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup - 1 - - --- 2026-09-09 Pablo Neira Ayuso Changes Requested
[net,0/7] Netfilter/IPVS fixes for net - - - - --- 2026-09-09 Pablo Neira Ayuso Changes Requested
[nf] ipvs: fix buffer overflow when sending sync messages [nf] ipvs: fix buffer overflow when sending sync messages - 1 - - --- 2026-09-09 Julian Anastasov New
[nf] netfilter: ctnetlink: fix inverted IPv6 address match in dump filter [nf] netfilter: ctnetlink: fix inverted IPv6 address match in dump filter - 1 - - --- 2026-09-09 Piotr Kubik New
[nf,v2,1/1] netfilter: x_tables: avoid holding mutex over faultable user copies netfilter: x_tables: avoid holding mutex over faultable user copies - 1 - - --- 2026-09-09 zihan xi New
[nf] ipvs: read the seq_mask only once on sync [nf] ipvs: read the seq_mask only once on sync - 1 - - --- 2026-09-09 Julian Anastasov New
[nf,v4] netfilter: nfnetlink: Fix for interrupted hook dumps [nf,v4] netfilter: nfnetlink: Fix for interrupted hook dumps - 2 - - --- 2026-09-09 Phil Sutter New
[nf-next] netfilter: flowtable: check namespace before iterating flows [nf-next] netfilter: flowtable: check namespace before iterating flows - - - - --- 2026-09-09 Qingfang Deng New
[nf] net/sched: act_ct: set net pointer before publishing flowtable [nf] net/sched: act_ct: set net pointer before publishing flowtable - 1 1 - --- 2026-09-09 Qingfang Deng New
[nf,v3,RESEND,2/2] netfilter: nfnetlink: Fix for interrupted hook dumps [nf,v3,RESEND,1/2] netfilter: nf_nat: unregister and release hooks on error - 2 - - --- 2026-09-09 Pablo Neira Ayuso Accepted
[nf,v3,RESEND,1/2] netfilter: nf_nat: unregister and release hooks on error [nf,v3,RESEND,1/2] netfilter: nf_nat: unregister and release hooks on error - 1 - - --- 2026-09-09 Pablo Neira Ayuso Accepted
[nf] netfilter: set on this module via struct netlink_dump_control [nf] netfilter: set on this module via struct netlink_dump_control - 5 - - --- 2026-09-08 Pablo Neira Ayuso Accepted
[nf] netfilter: nf_tables: skip expired catchall elements in dedup walk [nf] netfilter: nf_tables: skip expired catchall elements in dedup walk - 1 - - --- 2026-09-08 Aohan Mei New
[nf-next,4/4] netfilter: conntrack: Improve invalid packet stats netfilter: Conntrack counter review - - - - --- 2026-09-08 Phil Sutter New
[nf-next,3/4] netfilter: conntrack: nf_ct_seq_adjust to return error cause netfilter: Conntrack counter review - - - - --- 2026-09-08 Phil Sutter New
[nf-next,2/4] netfilter: conntrack: Untangle drop and invalid counters netfilter: Conntrack counter review - - - - --- 2026-09-08 Phil Sutter New
[nf-next,1/4] netfilter: conntrack: Untangle insert_failed counter from others netfilter: Conntrack counter review - - - - --- 2026-09-08 Phil Sutter New
[nft,v2] extend ct_label_set with a negative ct label match and switch to inline counter checks (.n… [nft,v2] extend ct_label_set with a negative ct label match and switch to inline counter checks (.n… - - - - --- 2026-09-08 Jiri Peska Accepted
[nf] netfilter: xt_IDLETIMER: allocate timer with kzalloc() [nf] netfilter: xt_IDLETIMER: allocate timer with kzalloc() - 1 - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf] netfilter: flowtable: hold reference on ct until flow is released [nf] netfilter: flowtable: hold reference on ct until flow is released - 1 - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf-next,v3,8/8] netfilter: ipset: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso New
[nf-next,v3,7/8] netfilter: conncount: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf-next,v3,6/8] netfilter: nat: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf-next,v3,5/8] netfilter: sysctl: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf-next,v3,4/8] netfilter: synproxy: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf-next,v3,3/8] netfilter: nf_tables: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf-next,v3,2/8] netfilter: nfnetlink: use GFP_KERNEL_ACCOUNT [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target [nf-next,v3,1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target - - - - --- 2026-09-07 Pablo Neira Ayuso Accepted
[nf] ipvs: revalidate ihl before icmp_send [nf] ipvs: revalidate ihl before icmp_send - 2 - - --- 2026-09-07 Julian Anastasov Accepted
[nf] ipvs: fix more races around the overload flag [nf] ipvs: fix more races around the overload flag - 1 - - --- 2026-09-07 Julian Anastasov New
[net,9/9] netfilter: report NLM_F_DUMP_FILTERED when all is filtered out [net,1/9] ipvs: reject invalid states in connection template sync records - 1 1 - --- 2026-09-07 Pablo Neira Ayuso Accepted
[net,8/9] netfilter: ip6_tables: set F_PROTO when proto value is nonzero [net,1/9] ipvs: reject invalid states in connection template sync records - 1 - - --- 2026-09-07 Pablo Neira Ayuso Accepted
« 1 2 3 4316 317 »