Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Archived =
No
| 30579 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
demarchi
ms
bhundven
chbs
kengyu
kadlec
regit
jabk
laforge
laforge
tonyb
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
mrchuck
vineetg76
computersforpeace
patrick_delaunay
Noltari
Noltari
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
phil
mkresin
mkresin
thess
thess
fbarrat
fbarrat
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
ajd
darball1
sammj
jogo
jogo
bhelgaas
blogic
blogic
tagr
tagr
oohal
russellb
ptomsich
agraf
joestringer
naveen
pepe2k
pepe2k
pchotard
mwalle
arj
arj
davem
davem
davem
jforissier
andmur01
amitay
matttbe
pabeni
istokes
aparcar
danielschwierzeck
martineau
Ansuel
maddy
goliath
tpetazzoni
mariosix
dcaratti
aserdean
ovsrobot
ovsrobot
mkorpershoek
marex
khem
XiaoYang
apritzel
robimarko
danielhb
groug
npiggin
liwang
mmichelson
pareddja
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
dsa
jstancek
bpf
shettyg
lorpie01
acelan
wigyori
wigyori
pm215
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
0andriy
981213
narmstrong
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
monstr
blocktrron
vigneshr
mraynal
shemminger
chunkeey
stewart
stewart
ukleinek
ukleinek
kabel
prom
Jaehoon
rfried
metan
ag
wsa
akumar
rsalvaterra
adrianschmutzler
hegdevasant
hegdevasant
horms
xypron
jacmet
jagan
arbab
freenix
kevery
ehristev
rmilecki
rmilecki
bmeng
ivanhu
sjg
trini
juju
wbx
apconole
legoater
legoater
legoater
rw
rw
abelloni
svanheule
chleroy
pablo
pablo
bjonglez
pevik
sbabic
sbabic
ynezz
xback
xback
richiejp
dangole
dangole
jonhunter
aik
Hauke
Hauke
forty
echaudron
amusil
anuppatel
anuppatel
next_ghost
acer
benh
rgrimm
passgat
segher
pratyush
jms
jms
jms
festevam
mans0n
ruscur
jmberg
numans
Andes
ymorin
jk
jk
jk
jk
xuyang
linusw
linusw
conchuod
matthias_bgg
tambarus
kubu
tytso
ltpci
krzk
spectrum
imaximets
dceara
stroese
pbrobinson
strlen
strlen
apalos
neocturne
cazzacarna
aldot
tperale
TIENFONG
mpe
galak
sfr
arnout
ktraynor
robh
nbd
nbd
anguy11
kcxt
paulus
mwilczynski
jm
Bubu
iTitou
vfazio
hs
dlech
raymo200915
jstephan
Apply
«
1
2
3
4
…
305
306
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[nf-next,v2] netfilter: nft_meta: add double-tagged vlan and pppoe support
[nf-next,v2] netfilter: nft_meta: add double-tagged vlan and pppoe support
- - - -
-
-
-
2026-03-16
Pablo Neira Ayuso
New
[nf,v2] netfilter: nft_set_rbtree: revisit array resize logic
[nf,v2] netfilter: nft_set_rbtree: revisit array resize logic
- 1 - -
-
-
-
2026-03-16
Pablo Neira Ayuso
New
[v2] netfilter: nf_conntrack_sip: add bounds-checked port parsing helper
[v2] netfilter: nf_conntrack_sip: add bounds-checked port parsing helper
- 1 - 1
-
-
-
2026-03-13
Guanni Qu
New
[nf-next] netfilter: nfnetlink_hook: Dump nat type chains
[nf-next] netfilter: nfnetlink_hook: Dump nat type chains
- - - -
-
-
-
2026-03-13
Phil Sutter
New
[nf-next] netfilter: nf_conntrack_h323: remove unreliable debug code in decode_octstr
[nf-next] netfilter: nf_conntrack_h323: remove unreliable debug code in decode_octstr
- - - -
-
-
-
2026-03-12
Florian Westphal
New
[nft] cache: Fix for multiple commands in a single batch
[nft] cache: Fix for multiple commands in a single batch
- 1 - -
-
-
-
2026-03-11
Phil Sutter
New
[nft,5/5] cache: Filter for table when listing flowtables
Enhance cache filter for list commands
- 1 1 -
-
-
-
2026-03-10
Phil Sutter
New
[nft,4/5] cache: Filter for table when listing sets or maps
Enhance cache filter for list commands
- 1 1 -
-
-
-
2026-03-10
Phil Sutter
New
[nft,3/5] cache: Relax chain_cache_dump filter application
Enhance cache filter for list commands
- 1 1 -
-
-
-
2026-03-10
Phil Sutter
New
[nft,2/5] cache: Respect family in all list commands
Enhance cache filter for list commands
- 2 1 -
-
-
-
2026-03-10
Phil Sutter
New
[nft,1/5] cache: Include chains, flowtables and objects in netlink debug output
Enhance cache filter for list commands
- - - -
-
-
-
2026-03-10
Phil Sutter
New
[net] netfilter: nf_flow_table_offload: fix heap overflow in flow_action_entry_next()
[net] netfilter: nf_flow_table_offload: fix heap overflow in flow_action_entry_next()
- 1 - -
-
-
-
2026-03-07
Hyunwoo Kim
New
[nf,v2] netfilter: nft_set_rbtree: allocate same array size on updates
[nf,v2] netfilter: nft_set_rbtree: allocate same array size on updates
- 1 - -
-
-
-
2026-03-07
Pablo Neira Ayuso
New
[nft] datatype: Accept IPv4 addresses for ip6addr_type
[nft] datatype: Accept IPv4 addresses for ip6addr_type
- - - -
-
-
-
2025-12-10
Phil Sutter
New
[nft,v2] src: Convert ip {s,d}addr to IPv4-mapped as needed
[nft,v2] src: Convert ip {s,d}addr to IPv4-mapped as needed
- - - -
-
-
-
2025-12-10
Phil Sutter
New
Some common changes in ulogs: 1) Added debug log to indicate when stack is created. Helps to debug …
Some common changes in ulogs: 1) Added debug log to indicate when stack is created. Helps to debug …
- - - -
-
-
-
2025-11-30
Serhii Ivanov
New
Update nlog plufin to provide more information to other ones
Update nlog plufin to provide more information to other ones
- - - -
-
-
-
2025-11-30
Serhii Ivanov
New
Added netfilter output plugin with ability to write into pcap nflog packets
Added netfilter output plugin with ability to write into pcap nflog packets
- - - -
-
-
-
2025-11-30
Serhii Ivanov
New
[nft,v3] src: add connlimit stateful object support
[nft,v3] src: add connlimit stateful object support
- - 1 -
-
-
-
2025-11-24
Fernando Fernandez Mancera
New
[libnftnl] src: add connlimit stateful object support
[libnftnl] src: add connlimit stateful object support
- - - -
-
-
-
2025-11-04
Fernando Fernandez Mancera
New
[libnftnl,v2] expr: add support to math expression
[libnftnl,v2] expr: add support to math expression
- - - -
-
-
-
2025-11-03
Fernando Fernandez Mancera
New
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection
- 1 - -
-
-
-
2025-02-20
Pablo Neira Ayuso
New
[nftables] include: fix for musl with iptables v1.8.11
[nftables] include: fix for musl with iptables v1.8.11
- - - -
-
-
-
2024-12-19
Alyssa Ross
New
[v4] net/bridge: Optimizing read-write locks in ebtables.c
[v4] net/bridge: Optimizing read-write locks in ebtables.c
- - - -
-
-
-
2024-09-25
yushengjin
New
[nft] limit: Support arbitrary unit values
[nft] limit: Support arbitrary unit values
- - - -
-
-
-
2024-04-13
Phil Sutter
New
[nf-next] netfilter: nfnetlink_queue: prefer skb_mac_header helpers
[nf-next] netfilter: nfnetlink_queue: prefer skb_mac_header helpers
- - - -
-
-
-
2026-03-12
Florian Westphal
Under Review
[nf-next] netfilter: add deprecation warning for dccp support
[nf-next] netfilter: add deprecation warning for dccp support
- - - -
-
-
-
2026-03-12
Florian Westphal
Under Review
[nf-next] netfilter: nf_conntrack_sip: remove net variable shadowing
[nf-next] netfilter: nf_conntrack_sip: remove net variable shadowing
- - - -
-
-
-
2026-03-12
Florian Westphal
Under Review
netfilter: nf_tables: Fix typo in enum description
netfilter: nf_tables: Fix typo in enum description
- - - -
-
-
-
2026-03-09
Jelle van der Waa
Under Review
[net] netfilter: ctnetlink: fix use-after-free of exp->master in single expectation GET
[net] netfilter: ctnetlink: fix use-after-free of exp->master in single expectation GET
- 1 - -
-
-
-
2026-03-07
Hyunwoo Kim
Under Review
[net] netfilter: ctnetlink: fix use-after-free of exp->master in expectation dump
[net] netfilter: ctnetlink: fix use-after-free of exp->master in expectation dump
- 1 - -
-
-
-
2026-03-07
Hyunwoo Kim
Under Review
netfilter: use function typedefs for __rcu NAT helper hook pointers
netfilter: use function typedefs for __rcu NAT helper hook pointers
- - - -
-
-
-
2026-03-03
Sun Jian
Under Review
[ipset] tests: Fix for standalone calls to setlist_resize.sh
[ipset] tests: Fix for standalone calls to setlist_resize.sh
- 1 - -
-
-
-
2025-07-22
Phil Sutter
kadlec
Under Review
[V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
[V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
- - - -
-
-
-
2025-04-15
lvxiafei
Under Review
[nft] Revert "tests: py: use `os.unshare` Python function"
[nft] Revert "tests: py: use `os.unshare` Python function"
- 1 - -
-
-
-
2026-03-13
Phil Sutter
Accepted
[iptables] xtables-translate: Return non-zero if translation fails
[iptables] xtables-translate: Return non-zero if translation fails
1 - - -
-
-
-
2026-03-10
Phil Sutter
Accepted
[nft] tests: py: use `os.unshare` Python function
[nft] tests: py: use `os.unshare` Python function
- - - -
-
-
-
2026-03-05
Jeremy Sowden
Accepted
[iptables,2/2] nft: Use the current name for the desired NFTNL_EXPR_BITWISE_OP
[iptables,1/2] include: linux: nf_tables.h: Sync with current kernel UAPI headers
- - - -
-
-
-
2026-03-05
Phil Sutter
Accepted
[iptables,1/2] include: linux: nf_tables.h: Sync with current kernel UAPI headers
[iptables,1/2] include: linux: nf_tables.h: Sync with current kernel UAPI headers
- - - -
-
-
-
2026-03-05
Phil Sutter
Accepted
[iptables] tests: iptables-test, xlate-test: use `os.unshare` Python function
[iptables] tests: iptables-test, xlate-test: use `os.unshare` Python function
- - - -
-
-
-
2026-03-04
Jeremy Sowden
Accepted
[nft] Tree-wide use of python3
[nft] Tree-wide use of python3
- - - -
-
-
-
2026-02-16
Pablo Neira Ayuso
Accepted
[nft] json: complete multi-statement set element support
[nft] json: complete multi-statement set element support
- 1 - -
-
-
-
2026-02-16
Pablo Neira Ayuso
Accepted
[nft,v4] configure: Implement --enable-profiling option
[nft,v4] configure: Implement --enable-profiling option
- - - -
-
-
-
2026-02-12
Phil Sutter
Accepted
[v2] iptables: fix null dereference parsing bitwise operations
[v2] iptables: fix null dereference parsing bitwise operations
- - - -
-
-
-
2026-02-12
Remy D. Farley
Accepted
[ebtables] useful_functions: Fix for buffer overflow in parse_ip6_mask()
[ebtables] useful_functions: Fix for buffer overflow in parse_ip6_mask()
- - - -
-
-
-
2026-02-11
Phil Sutter
Accepted
[iptables] configure: Auto-detect libz unless explicitly requested
[iptables] configure: Auto-detect libz unless explicitly requested
- 1 - -
-
-
-
2026-01-29
Phil Sutter
Accepted
[iptables] tests: shell: Review nft-only/0009-needless-bitwise_0
[iptables] tests: shell: Review nft-only/0009-needless-bitwise_0
- - - -
-
-
-
2026-01-29
Phil Sutter
Accepted
[iptables,v2] ruleparse: arp: Fix for all-zero mask on Big Endian
[iptables,v2] ruleparse: arp: Fix for all-zero mask on Big Endian
- 1 - -
-
-
-
2026-01-29
Phil Sutter
Accepted
[nft] tests: py: Adjust payloads to changed userdata printing
[nft] tests: py: Adjust payloads to changed userdata printing
- - - -
-
-
-
2026-01-29
Phil Sutter
Accepted
[libnftnl,2/2] src: Do not include userdata content in debug output
[libnftnl,1/2] Revert "udata: Store u32 udata values in Big Endian"
- - - -
-
-
-
2026-01-29
Phil Sutter
Accepted
[libnftnl,1/2] Revert "udata: Store u32 udata values in Big Endian"
[libnftnl,1/2] Revert "udata: Store u32 udata values in Big Endian"
- - - -
-
-
-
2026-01-29
Phil Sutter
Accepted
[nft,3/3] build: support `SOURCE_DATE_EPOCH` for build time-stamp
[nft,1/3] build: simplify the instantation of nftversion.h
- 1 - -
-
-
-
2026-01-28
Jeremy Sowden
Accepted
[nft,2/3] build: generate build time-stamp once at configure
[nft,1/3] build: simplify the instantation of nftversion.h
- 1 - -
-
-
-
2026-01-28
Jeremy Sowden
Accepted
[nft,1/3] build: simplify the instantation of nftversion.h
[nft,1/3] build: simplify the instantation of nftversion.h
- - - -
-
-
-
2026-01-28
Jeremy Sowden
Accepted
[nft] Makefile.am: Drop pointless per-project AM_CPPFLAGS
[nft] Makefile.am: Drop pointless per-project AM_CPPFLAGS
- 1 - -
-
-
-
2026-01-27
Phil Sutter
Accepted
[nft,4/4] tests: shell: Add a basic test for src/xt.c
Inspect and improve test suite code coverage
- - - -
-
-
-
2026-01-27
Phil Sutter
Accepted
[nft,3/4] xt: Print comment match data as well
Inspect and improve test suite code coverage
- - - -
-
-
-
2026-01-27
Phil Sutter
Accepted
[nft,2/4] tests: shell: Add a simple test for nftrace
Inspect and improve test suite code coverage
- - - -
-
-
-
2026-01-27
Phil Sutter
Accepted
[nft] doc: nft.8: Describe iface_type data type
[nft] doc: nft.8: Describe iface_type data type
- - - -
-
-
-
2026-01-27
Phil Sutter
Accepted
[iptables] libxtables: Store all requested target types
[iptables] libxtables: Store all requested target types
- - - -
-
-
-
2026-01-23
Phil Sutter
Accepted
[v6,3/3] tests: shell: add JSON test for handle-based rule positioning
parser_json: support handle for rule positioning
- - - -
-
-
-
2026-01-20
Alexandre Knecht
Accepted
[v6,2/3] tests: shell: add JSON test for all object types
parser_json: support handle for rule positioning
- - - -
-
-
-
2026-01-20
Alexandre Knecht
Accepted
[v6,1/3] parser_json: support handle for rule positioning in explicit JSON format
parser_json: support handle for rule positioning
- - - -
-
-
-
2026-01-20
Alexandre Knecht
Accepted
[nft] tests: monitor: Fix for out-of-path call
[nft] tests: monitor: Fix for out-of-path call
- 1 - -
-
-
-
2025-12-16
Phil Sutter
Accepted
build: avoid bashism in configure
build: avoid bashism in configure
- - - -
-
-
-
2025-12-05
Jan Palus
Accepted
[iptables] nft: Support replacing a rule added in the same batch
[iptables] nft: Support replacing a rule added in the same batch
- 1 - -
-
-
-
2025-11-20
Phil Sutter
Accepted
[nft] rule: skip CMD_OBJ_SETELEMS with no elements after set flush
[nft] rule: skip CMD_OBJ_SETELEMS with no elements after set flush
- 1 - -
-
-
-
2025-11-19
Pablo Neira Ayuso
Accepted
[nft,v2,11/11] utils: Introduce expr_print_debug()
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,10/11] tests: py: Update payload records
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,09/11] tests: py: tools: Add regen_payloads.sh
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,08/11] netlink: Make use of nftnl_{expr,set_elem}_set_imm()
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,07/11] netlink: Introduce struct nft_data_linearize::sizes
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,06/11] netlink: Introduce struct nft_data_linearize::byteorder
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,05/11] expression: Set range expression 'len' field
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,04/11] intervals: Convert byte order implicitly
Fix netlink debug output on Big Endian
- - - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,03/11] mergesort: Align concatenation sort order with Big Endian
Fix netlink debug output on Big Endian
- 1 - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,02/11] mergesort: Fix sorting of string values
Fix netlink debug output on Big Endian
- 1 - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[nft,v2,01/11] segtree: Fix range aggregation on Big Endian
Fix netlink debug output on Big Endian
- 1 - -
-
-
-
2025-11-14
Phil Sutter
Accepted
[conntrack-tools,v2,3/3] conntrackd: update netns test to support IPv6
[conntrack-tools,v2,1/3] conntrackd: restrict multicast reception
- - - -
-
-
-
2025-11-10
Pablo Neira Ayuso
Accepted
[conntrack-tools,v2,2/3] conntrackd: remove double close() in multicast resulting in EBADFD
[conntrack-tools,v2,1/3] conntrackd: restrict multicast reception
- - - -
-
-
-
2025-11-10
Pablo Neira Ayuso
Accepted
[conntrack-tools,v2,1/3] conntrackd: restrict multicast reception
[conntrack-tools,v2,1/3] conntrackd: restrict multicast reception
- - - -
-
-
-
2025-11-10
Pablo Neira Ayuso
Accepted
[nft] doc: libnftables-json: Describe RULESET object
[nft] doc: libnftables-json: Describe RULESET object
- - - -
-
-
-
2025-11-06
Phil Sutter
Accepted
[nf,v3,2/2] doc: clarify JSON rule positioning with handle field
Untitled series #481127
1 - - -
-
-
-
2025-11-06
Alexandre Knecht
Accepted
[libnftnl,9/9] udata: Store u32 udata values in Big Endian
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[libnftnl,8/9] data_reg: Support concatenated data
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[libnftnl,7/9] data_reg: Respect data byteorder when printing
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[libnftnl,6/9] Introduce nftnl_{expr,set_elem}_set_imm()
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[libnftnl,5/9] data_reg: Introduce struct nftnl_data_reg::sizes array
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[libnftnl,4/9] data_reg: Introduce struct nftnl_data_reg::byteorder field
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[libnftnl,3/9] expr: Pass byteorder to struct expr_ops::set callback
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[libnftnl,2/9] expr: data_reg: Avoid extra whitespace
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[libnftnl,1/9] set_elem: Review debug output
Fix for debug output on Big Endian
- - - -
-
-
-
2025-10-23
Phil Sutter
Accepted
[nf-next,5/5] netfilter: flowtable: remove hw_ifidx
flowtable: consolidate xmit path
- - - -
-
-
-
2025-10-10
Pablo Neira Ayuso
Accepted
[nf-next,4/5] netfilter: flowtable: inline pppoe encapsulation in xmit path
flowtable: consolidate xmit path
- - - -
-
-
-
2025-10-10
Pablo Neira Ayuso
Accepted
[nf-next,3/5] netfilter: flowtable: inline vlan encapsulation in xmit path
flowtable: consolidate xmit path
- - - -
-
-
-
2025-10-10
Pablo Neira Ayuso
Accepted
[nf-next,2/5] netfilter: flowtable: consolidate xmit path
flowtable: consolidate xmit path
- - - -
-
-
-
2025-10-10
Pablo Neira Ayuso
Accepted
[nf-next,1/5] netfilter: flowtable: move path discovery infrastructure to its own file
flowtable: consolidate xmit path
- - - -
-
-
-
2025-10-10
Pablo Neira Ayuso
Accepted
[libnftnl] utils: Drop asterisk from end of NFTA_DEVICE_PREFIX strings
[libnftnl] utils: Drop asterisk from end of NFTA_DEVICE_PREFIX strings
- 1 - -
-
-
-
2025-10-07
Phil Sutter
Accepted
[nft] mnl: Drop asterisk from end of NFTA_DEVICE_PREFIX strings
[nft] mnl: Drop asterisk from end of NFTA_DEVICE_PREFIX strings
- 1 1 -
-
-
-
2025-10-07
Phil Sutter
Accepted
[nft] fib: Fix for existence check on Big Endian
[nft] fib: Fix for existence check on Big Endian
- 1 1 -
-
-
-
2025-09-09
Phil Sutter
Accepted
«
1
2
3
4
…
305
306
»