Show patches with: Archived = No       |   28478 patches
« 1 2 3 4284 285 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[nft,1/4] tests: shell: payload matching requires egress support add missing requirements in tests/shell - 1 - - --- 2024-04-08 Pablo Neira Ayuso Accepted
[2/2] selftests/landlock: Create 'listen_zero', 'deny_listen_zero' tests Forbid illegitimate binding via listen(2) - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[1/2] landlock: Add hook on socket_listen() Forbid illegitimate binding via listen(2) - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,10/10] samples/landlock: Support socket protocol restrictions Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,09/10] selftests/landlock: Create 'ruleset_with_unknown_access' test Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,08/10] selftests/landlock: Create 'ruleset_overlap' test Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,07/10] selftests/landlock: Create 'inval' test Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,06/10] selftests/landlock: Create 'rule_with_unhandled_access' test Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,05/10] selftests/landlock: Create 'rule_with_unknown_access' test Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,04/10] selftests/landlock: Create 'socket_access_rights' test Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,03/10] selftests/landlock: Create 'create' test Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,02/10] landlock: Add hook on socket_create() Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[RFC,v1,01/10] landlock: Support socket access-control Socket type control for Landlock - - 1 - --- 2024-04-08 Ivanov Mikhail Handled Elsewhere
[nft] dynset: avoid errouneous assert with ipv6 concat data [nft] dynset: avoid errouneous assert with ipv6 concat data - - - - --- 2024-04-07 Son Dinh Superseded
[nft,2/2] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get() netfilter: nf_tables: Use rcu lock to enhance protection of the lists - 1 - - --- 2024-04-07 Ziyang Xuan Accepted
[nft,1/2] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() netfilter: nf_tables: Use rcu lock to enhance protection of the lists - 1 - - --- 2024-04-07 Ziyang Xuan Accepted
[nft] expr: make map lookup expression as an argument in vmap statement [nft] expr: make map lookup expression as an argument in vmap statement - - - - --- 2024-04-07 Son Dinh Superseded
[net] netfilter: validate user input for expected length [net] netfilter: validate user input for expected length - 1 1 - --- 2024-04-04 Eric Dumazet Awaiting Upstream
[net,6/6] netfilter: nf_tables: discard table flag update with pending basechain deletion [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-04 Pablo Neira Ayuso Accepted
[net,5/6] netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get() [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-04 Pablo Neira Ayuso Accepted
[net,4/6] netfilter: nf_tables: reject new basechain after table flag update [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-04 Pablo Neira Ayuso Accepted
[net,3/6] netfilter: nf_tables: flush pending destroy work before exit_net release [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-04 Pablo Neira Ayuso Accepted
[net,2/6] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-04 Pablo Neira Ayuso Accepted
[net,1/6] netfilter: nf_tables: release batch on table validation from abort path [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-04 Pablo Neira Ayuso Accepted
[net,0/6] Netfilter fixes for net - - - - --- 2024-04-04 Pablo Neira Ayuso Accepted
conntrackd: Fix signal handler race-condition conntrackd: Fix signal handler race-condition - - - - --- 2024-04-04 bre Breitenberger Markus New
[nf,v2] netfilter: nf_tables: discard table flag update with pending basechain deletion [nf,v2] netfilter: nf_tables: discard table flag update with pending basechain deletion - 1 - - --- 2024-04-03 Pablo Neira Ayuso Accepted
[nf] netfilter: nf_tables: discard table flag update with pending basechain deletion [nf] netfilter: nf_tables: discard table flag update with pending basechain deletion - 1 - - --- 2024-04-03 Pablo Neira Ayuso Changes Requested
[nft,v2,2/2] evaluate: add support for variables in map expressions Support for variables in map expressions - - - - --- 2024-04-03 Jeremy Sowden Accepted
[nft,v2,1/2] evaluate: handle invalid mapping expressions in stateful object statements gracefully. Support for variables in map expressions - - - - --- 2024-04-03 Jeremy Sowden Accepted
[nf,v2,4/4] netfilter: nf_tables: reject new basechain after table flag update [nf,v2,1/4] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-03 Pablo Neira Ayuso Accepted
[nf,v2,3/4] netfilter: nf_tables: flush pending destroy work before exit_net release [nf,v2,1/4] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-03 Pablo Neira Ayuso Accepted
[nf,v2,2/4] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path [nf,v2,1/4] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-03 Pablo Neira Ayuso Accepted
[nf,v2,1/4] netfilter: nf_tables: release batch on table validation from abort path [nf,v2,1/4] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-03 Pablo Neira Ayuso Accepted
[nft] tests: packetpath: add check for drop policy [nft] tests: packetpath: add check for drop policy - - - - --- 2024-04-03 Florian Westphal New
[nft,v2] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get() [nft,v2] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get() - 1 1 - --- 2024-04-03 Ziyang Xuan Accepted
[nft] src: disentangle ICMP code types [nft] src: disentangle ICMP code types - - - - --- 2024-04-01 Pablo Neira Ayuso Accepted
[nf,3/3] netfilter: nf_tables: flush pending destroy work before exit_net release [nf,1/3] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-01 Pablo Neira Ayuso Changes Requested
[nf,2/3] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path [nf,1/3] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-01 Pablo Neira Ayuso Changes Requested
[nf,1/3] netfilter: nf_tables: release batch on table validation from abort path [nf,1/3] netfilter: nf_tables: release batch on table validation from abort path - 1 - - --- 2024-04-01 Pablo Neira Ayuso Changes Requested
[nft] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get() [nft] netfilter: nf_tables: Fix pertential data-race in __nft_flowtable_type_get() - - - - --- 2024-04-01 Ziyang Xuan Changes Requested
[nft] netlink_delinearize: unused code in reverse cross-day meta hour range [nft] netlink_delinearize: unused code in reverse cross-day meta hour range - 1 - - --- 2024-04-01 Pablo Neira Ayuso Accepted
[PATCHv3,net-next,14/14] ipvs: add conn_lfactor and svc_lfactor sysctl vars ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,13/14] ipvs: add ip_vs_status info ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,12/14] ipvs: use more keys for connection hashing ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,11/14] ipvs: no_cport and dropentry counters can be per-net ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,10/14] ipvs: show the current conn_tab size to users ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,09/14] ipvs: switch to per-net connection table ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,08/14] ipvs: use resizable hash table for services ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,07/14] ipvs: add resizable hash tables ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,06/14] ipvs: use more counters to avoid service lookups ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,05/14] ipvs: do not keep dest_dst after dest is removed ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,04/14] ipvs: use single svc table ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,03/14] ipvs: some service readers can use RCU ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,02/14] ipvs: make ip_vs_svc_table and ip_vs_svc_fwm_table per netns ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[PATCHv3,net-next,01/14] rculist_bl: add hlist_bl_for_each_entry_continue_rcu ipvs: per-net tables and optimizations - - - - --- 2024-03-31 Julian Anastasov Awaiting Upstream
[bpf-next] net: netfilter: Make ct zone id configurable for bpf ct helper functions [bpf-next] net: netfilter: Make ct zone id configurable for bpf ct helper functions - - - - --- 2024-03-29 Brad Cowie Changes Requested
[v2,4/4] ax.25: Remove the now superfluous sentinel elements from ctl_table array [v2,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array - - - - --- 2024-03-28 Joel Granados via B4 Relay Handled Elsewhere
[v2,3/4] appletalk: Remove the now superfluous sentinel elements from ctl_table array [v2,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array - - - - --- 2024-03-28 Joel Granados via B4 Relay Handled Elsewhere
[v2,2/4] netfilter: Remove the now superfluous sentinel elements from ctl_table array [v2,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array - - - - --- 2024-03-28 Joel Granados via B4 Relay Handled Elsewhere
[v2,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array [v2,1/4] networking: Remove the now superfluous sentinel elements from ctl_table array - - - - --- 2024-03-28 Joel Granados via B4 Relay Handled Elsewhere
[v2,0/4] sysctl: Remove sentinel elements from networking - - - - --- 2024-03-28 Joel Granados via B4 Relay Handled Elsewhere
[net,4/4] netfilter: arptables: Select NETFILTER_FAMILY_ARP when building arp_tables.c [net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks - 1 1 - --- 2024-03-28 Pablo Neira Ayuso Accepted
[net,3/4] netfilter: nf_tables: skip netdev hook unregistration if table is dormant [net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks - 2 - - --- 2024-03-28 Pablo Neira Ayuso Accepted
[net,2/4] netfilter: nf_tables: reject table flag and netdev basechain updates [net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks - 2 - - --- 2024-03-28 Pablo Neira Ayuso Accepted
[net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks [net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks - 1 - - --- 2024-03-28 Pablo Neira Ayuso Accepted
[net,0/4] Netfilter fixes for net - - - - --- 2024-03-28 Pablo Neira Ayuso Accepted
[nft,v2,2/2] Add support for table's persist flag Add support for table's persist flag - - - - --- 2024-03-26 Phil Sutter Superseded
[nft,v2,1/2] doc: nft.8: Two minor synopsis fixups Add support for table's persist flag - 1 - - --- 2024-03-26 Phil Sutter Accepted
[v2,net] inet: inet_defrag: prevent sk release while still in use [v2,net] inet: inet_defrag: prevent sk release while still in use - 1 1 - --- 2024-03-26 Florian Westphal Awaiting Upstream
samples/landlock: Fix incorrect free in populate_ruleset_net samples/landlock: Fix incorrect free in populate_ruleset_net - 1 1 - --- 2024-03-26 Ivanov Mikhail Handled Elsewhere
[v1,nf] netfilter: arptables: Select NETFILTER_FAMILY_ARP when building arp_tables.c [v1,nf] netfilter: arptables: Select NETFILTER_FAMILY_ARP when building arp_tables.c - 1 1 - --- 2024-03-26 Kuniyuki Iwashima Accepted
[net-next,v2] netfilter: use NF_DROP instead of -NF_DROP [net-next,v2] netfilter: use NF_DROP instead of -NF_DROP - - - - --- 2024-03-25 Jason Xing New
[net-next,3/3] netfilter: use NF_DROP in ip6table_filter_table_init() netfilter: use NF_DROP instead of -NF_DROP - - - - --- 2024-03-25 Jason Xing Changes Requested
[net-next,2/3] netfilter: use NF_DROP in iptable_filter_table_init() netfilter: use NF_DROP instead of -NF_DROP - - - - --- 2024-03-25 Jason Xing Changes Requested
[net-next,1/3] netfilter: using NF_DROP in test statement in nf_conntrack_in() netfilter: use NF_DROP instead of -NF_DROP - - - - --- 2024-03-25 Jason Xing Changes Requested
[RESEND,net-next] netfilter: conntrack: dccp: try not to drop skb in conntrack [RESEND,net-next] netfilter: conntrack: dccp: try not to drop skb in conntrack - - - - --- 2024-03-25 Jason Xing New
[nftables] tests: shell: packetpath/flowtables: open all temporary files in /tmp [nftables] tests: shell: packetpath/flowtables: open all temporary files in /tmp - 1 - - --- 2024-03-24 Jeremy Sowden Accepted
[nftables] evaluate: add support for variables in map expressions [nftables] evaluate: add support for variables in map expressions - - - - --- 2024-03-24 Jeremy Sowden New
[iptables] libxtables: Fix xtables_ipaddr_to_numeric calls with xtables_ipmask_to_numeric [iptables] libxtables: Fix xtables_ipaddr_to_numeric calls with xtables_ipmask_to_numeric - - - - --- 2024-03-23 Vitaly Chikunov Changes Requested
[nft] tests: shell: Avoid escape chars when printing to non-terminals [nft] tests: shell: Avoid escape chars when printing to non-terminals - - - - --- 2024-03-23 Phil Sutter Accepted
[nft,v2,5/5] tests: py: Drop needless recorded JSON outputs json: Accept more than two operands in binary expressions - - - - --- 2024-03-22 Phil Sutter Accepted
[nft,v2,4/5] tests: py: Warn if recorded JSON output matches the input json: Accept more than two operands in binary expressions - - - - --- 2024-03-22 Phil Sutter Accepted
[nft,v2,3/5] tests: py: Fix some JSON equivalents json: Accept more than two operands in binary expressions - - - - --- 2024-03-22 Phil Sutter Accepted
[nft,v2,2/5] mergesort: Avoid accidental set element reordering json: Accept more than two operands in binary expressions - 1 - - --- 2024-03-22 Phil Sutter Accepted
[nft,v2,1/5] json: Accept more than two operands in binary expressions json: Accept more than two operands in binary expressions - - - - --- 2024-03-22 Phil Sutter Accepted
[nft,2/2] Add support for table's persist flag Add support for table's persist flag - - - - --- 2024-03-22 Phil Sutter Superseded
[nft,1/2] doc: nft.8: Two minor synopsis fixups Add support for table's persist flag - 1 - - --- 2024-03-22 Phil Sutter Superseded
[nft] datatype: leave DTYPE_F_PREFIX only for IP address datatype [nft] datatype: leave DTYPE_F_PREFIX only for IP address datatype - - - - --- 2024-03-21 Pablo Neira Ayuso Accepted
[net,3/3] netfilter: nf_tables: Fix a memory leak in nf_tables_updchain [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - 1 - - --- 2024-03-21 Pablo Neira Ayuso Accepted
[net,2/3] netfilter: nf_tables: do not compare internal table flags on updates [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - 1 - - --- 2024-03-21 Pablo Neira Ayuso Accepted
[net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - 1 - - --- 2024-03-21 Pablo Neira Ayuso Accepted
[net,0/3,v2] Netfilter fixes for net - - - - --- 2024-03-21 Pablo Neira Ayuso Accepted
[nf,3/3] netfilter: nf_tables: skip netdev hook unregistration if table is dormant [nf,1/3] netfilter: nf_tables: reject destroy command to remove basechain hooks - 2 - - --- 2024-03-21 Pablo Neira Ayuso Accepted
[nf,2/3] netfilter: nf_tables: reject table flag and netdev basechain updates [nf,1/3] netfilter: nf_tables: reject destroy command to remove basechain hooks - 2 - - --- 2024-03-21 Pablo Neira Ayuso Accepted
[nf,1/3] netfilter: nf_tables: reject destroy command to remove basechain hooks [nf,1/3] netfilter: nf_tables: reject destroy command to remove basechain hooks - 1 - - --- 2024-03-21 Pablo Neira Ayuso Accepted
[net,3/3] netfilter: nf_tables: Fix a memory leak in nf_tables_updchain [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - 1 - - --- 2024-03-21 Pablo Neira Ayuso Changes Requested
[net,2/3] netfilter: nf_tables: do not compare internal table flags on updates [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - 1 - - --- 2024-03-21 Pablo Neira Ayuso Changes Requested
[net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - 1 - - --- 2024-03-21 Pablo Neira Ayuso Changes Requested
[net,0/3] Netfilter fixes for net - - - - --- 2024-03-21 Pablo Neira Ayuso Changes Requested
« 1 2 3 4284 285 »