Show patches with: Archived = No       |   31597 patches
« 1 2 ... 3 4 5315 316 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[net,06/13] netfilter: nf_conntrack: defer invalid log until after unlock [net,01/13] netfilter: ipset: fix refcount race between list:set GC and swap - 3 1 - --- 2026-08-10 Pablo Neira Ayuso Accepted
[net,05/13] ipvs: separate destination availability state [net,01/13] netfilter: ipset: fix refcount race between list:set GC and swap 1 1 - - --- 2026-08-10 Pablo Neira Ayuso Accepted
[net,04/13] ipvs: properly update the overload flag on dest edit [net,01/13] netfilter: ipset: fix refcount race between list:set GC and swap - 1 - - --- 2026-08-10 Pablo Neira Ayuso Accepted
[net,03/13] ipvs: add totalconns for dest [net,01/13] netfilter: ipset: fix refcount race between list:set GC and swap - 1 - - --- 2026-08-10 Pablo Neira Ayuso Accepted
[net,02/13] netfilter: bridge: release template ct on non-IP path [net,01/13] netfilter: ipset: fix refcount race between list:set GC and swap - 1 - - --- 2026-08-10 Pablo Neira Ayuso Accepted
[net,01/13] netfilter: ipset: fix refcount race between list:set GC and swap [net,01/13] netfilter: ipset: fix refcount race between list:set GC and swap 1 1 - - --- 2026-08-10 Pablo Neira Ayuso Accepted
[net,00/13] Netfilter/IPVS fixes for net - - - - --- 2026-08-10 Pablo Neira Ayuso Accepted
[nf,v2] netfilter: nf_reject: initialize IPCB at inet ingress [nf,v2] netfilter: nf_reject: initialize IPCB at inet ingress - 1 - - --- 2026-08-10 David Lee New
[v4,3/3] net: Const qualify network templated ctl_tables Arrays net: sysctl: Const Qualify sysctl ctl_table arrays - - - - --- 2026-08-10 Joel Granados Awaiting Upstream
[v4,2/3] net: Const qualify ctl_tables that kmemdup unconditionally net: sysctl: Const Qualify sysctl ctl_table arrays - - - - --- 2026-08-10 Joel Granados Awaiting Upstream
[v4,1/3] net: enforce net sysctl registration net: sysctl: Const Qualify sysctl ctl_table arrays - - - - --- 2026-08-10 Joel Granados Awaiting Upstream
[nf] netfilter: nf_tables: don't queue packet path object notifications [nf] netfilter: nf_tables: don't queue packet path object notifications - 1 - - --- 2026-08-10 Fourie Zhang Accepted
[nf-next] netfilter: nf_conntrack_expect: bail out on insert dead expectations [nf-next] netfilter: nf_conntrack_expect: bail out on insert dead expectations - - - - --- 2026-08-10 Pablo Neira Ayuso Accepted
[nf-next] netfilter: conntrack: always lower timeout for non-closing RST packets [nf-next] netfilter: conntrack: always lower timeout for non-closing RST packets - 1 - - --- 2026-08-10 Pablo Neira Ayuso Accepted
[nf-next,v4] netfilter: nft_ct: move custom expectation support to helper [nf-next,v4] netfilter: nft_ct: move custom expectation support to helper - 1 - - --- 2026-08-10 Pablo Neira Ayuso Accepted
netfilter: flowtable: publish GC-visible tuple last netfilter: flowtable: publish GC-visible tuple last - 1 - - --- 2026-08-08 Jérémy Jean Accepted
[nft] tests: shell: use an unassigned protocol number in exclusive_start_cond [nft] tests: shell: use an unassigned protocol number in exclusive_start_cond - - - - --- 2026-08-08 Avinash Duduskar Changes Requested
[nft] evaluate: reject negative values for unsigned datatypes [nft] evaluate: reject negative values for unsigned datatypes - 1 - - --- 2026-08-08 Avinash Duduskar Changes Requested
[nf-next,v3,2/2] netfilter: nft_ct: move custom expectation support to helper [nf-next,v3,1/2] netfilter: nf_conntrack_helper: remove synchronize_rcu() on helper removal - 1 - - --- 2026-08-07 Pablo Neira Ayuso Changes Requested
[nf-next,v3,1/2] netfilter: nf_conntrack_helper: remove synchronize_rcu() on helper removal [nf-next,v3,1/2] netfilter: nf_conntrack_helper: remove synchronize_rcu() on helper removal - - - - --- 2026-08-07 Pablo Neira Ayuso Changes Requested
[nf-next,v4] netfilter: ip6tables: hotdrop malformed hbh/dst and srh headers [nf-next,v4] netfilter: ip6tables: hotdrop malformed hbh/dst and srh headers - - - - --- 2026-08-07 Zhixing Chen New
[net,v2] selftests: netfilter: conntrack_dump_flush: remove unused variables and fix typo [net,v2] selftests: netfilter: conntrack_dump_flush: remove unused variables and fix typo - - 2 - --- 2026-08-07 Qingshuang Fu Accepted
[nf,v4] netfilter: ipset: remove need to allocate memory on delete operations operations [nf,v4] netfilter: ipset: remove need to allocate memory on delete operations operations - 1 - - --- 2026-08-07 Florian Westphal Accepted
[nf-next,7/7] netfilter: flowtable: detach layer 2 encapsulation parser from lookup flowtable preparation for IPv4 over IPv6 and SIT 1 - - - --- 2026-08-06 Pablo Neira Ayuso Accepted
[nf-next,6/7] netfilter: flowtable: move ipv4 and ipv6 xmit path to function flowtable preparation for IPv4 over IPv6 and SIT 1 - - - --- 2026-08-06 Pablo Neira Ayuso Accepted
[nf-next,5/7] netfilter: flowtable: store ethertype in flowtable context flowtable preparation for IPv4 over IPv6 and SIT 1 - - - --- 2026-08-06 Pablo Neira Ayuso Accepted
[nf-next,4/7] netfilter: flowtable: rename ctx.tun.proto to ctx.tun.inner_proto flowtable preparation for IPv4 over IPv6 and SIT 1 - - - --- 2026-08-06 Pablo Neira Ayuso Accepted
[nf-next,3/7] netfilter: flowtable: rename tun.l3_proto to tun.inner_proto flowtable preparation for IPv4 over IPv6 and SIT 1 - - - --- 2026-08-06 Pablo Neira Ayuso Accepted
[nf-next,2/7] net: netfilter: add ether_type to net_device_path_ctx and use it flowtable preparation for IPv4 over IPv6 and SIT 1 - - - --- 2026-08-06 Pablo Neira Ayuso Accepted
[nf-next,1/7] net: pass net_device_path_ctx to dev_fill_forward_path() flowtable preparation for IPv4 over IPv6 and SIT - - - - --- 2026-08-06 Pablo Neira Ayuso Accepted
[nft] netlink_linearize: size nat register allocation by address expression [nft] netlink_linearize: size nat register allocation by address expression - - - - --- 2026-08-06 Adrian Moisey Accepted
[net] netfilter: nf_tables_offload: suppress WARN_ON_ONCE for ENOMEM in abort path [net] netfilter: nf_tables_offload: suppress WARN_ON_ONCE for ENOMEM in abort path - 1 - - --- 2026-08-06 Alexey Velichayshiy Accepted
[nf] netfilter: ipset: let destroy callbacks adjust ext mem size [nf] netfilter: ipset: let destroy callbacks adjust ext mem size 1 1 - - --- 2026-08-06 Florian Westphal Accepted
[nf] netfilter: ipset: fix list type element drift bug [nf] netfilter: ipset: fix list type element drift bug 1 1 - - --- 2026-08-06 Florian Westphal Accepted
[nf] ipvs: revalidate ihl to prevent out-of-bounds access [nf] ipvs: revalidate ihl to prevent out-of-bounds access - 1 - - --- 2026-08-06 Julian Anastasov Accepted
selftests: netfilter: Remove unused variables in conntrack_dump_flush selftests: netfilter: Remove unused variables in conntrack_dump_flush - 1 1 - --- 2026-08-06 Qingshuang Fu Changes Requested
[nf-next,v2] netfilter: add DEBUG_NET_WARN_ON_ONCE to skb_set_nfct() [nf-next,v2] netfilter: add DEBUG_NET_WARN_ON_ONCE to skb_set_nfct() - - 1 - --- 2026-08-05 Pablo Neira Ayuso Accepted
[nf,v2,2/2] netfilter: nf_tables: call set ops .commit when building new ruleset [nf,v2,1/2] netfilter: nf_tables: move set_update_list to nftables per-netns - - - - --- 2026-08-05 Pablo Neira Ayuso Changes Requested
[nf,v2,1/2] netfilter: nf_tables: move set_update_list to nftables per-netns [nf,v2,1/2] netfilter: nf_tables: move set_update_list to nftables per-netns - - - - --- 2026-08-05 Pablo Neira Ayuso Changes Requested
[nft,3/3] tests: shell: add flush set after expiration [nft,v2,1/3] mergesort: use lhs expression when sorting concatenation - - - - --- 2026-08-05 Pablo Neira Ayuso Accepted
[nft,2/3] segtree: basic support for binary operations in concatenated set ranges [nft,v2,1/3] mergesort: use lhs expression when sorting concatenation - 1 - - --- 2026-08-05 Pablo Neira Ayuso Accepted
[nft,v2,1/3] mergesort: use lhs expression when sorting concatenation [nft,v2,1/3] mergesort: use lhs expression when sorting concatenation - 1 - - --- 2026-08-05 Pablo Neira Ayuso Accepted
[nf-next,2/2] netfilter: nf_tables: call set ops .commit when building new ruleset [nf-next,1/2] netfilter: nf_tables: make move set_update_list to nftables per-netns - - - - --- 2026-08-05 Pablo Neira Ayuso Changes Requested
[nf-next,1/2] netfilter: nf_tables: make move set_update_list to nftables per-netns [nf-next,1/2] netfilter: nf_tables: make move set_update_list to nftables per-netns - - - - --- 2026-08-05 Pablo Neira Ayuso Changes Requested
[nf-next] net: pass net_device_path_ctx to dev_fill_forward_path() [nf-next] net: pass net_device_path_ctx to dev_fill_forward_path() - - 1 - --- 2026-08-05 Lorenzo Bianconi Changes Requested
selftests: netfilter: add functional test for nft ct timeout policies selftests: netfilter: add functional test for nft ct timeout policies - - - - --- 2026-08-05 Valery Borovsky New
[net] netfilter: nf_dup_netdev: scrub duplicates to preserve the direct path [net] netfilter: nf_dup_netdev: scrub duplicates to preserve the direct path - - - - --- 2026-08-04 Alexandre Ferrieux New
[nf] netfilter: ipset: let destroy callbacks adjust ext mem size [nf] netfilter: ipset: let destroy callbacks adjust ext mem size 1 1 - - --- 2026-08-04 Florian Westphal Changes Requested
[nf] netfilter: nf_reject_ipv4: initialize IPCB at inet ingress [nf] netfilter: nf_reject_ipv4: initialize IPCB at inet ingress - 1 - - --- 2026-08-04 David Lee Changes Requested
[net] netfilter: nf_flow_table: drop existing skb dst before skb_dst_set_noref() [net] netfilter: nf_flow_table: drop existing skb dst before skb_dst_set_noref() - 1 1 - --- 2026-08-04 Eric Dumazet Awaiting Upstream
[nf,v2] ipvs: clear IPv4 options after rebasing tunnel ICMP errors [nf,v2] ipvs: clear IPv4 options after rebasing tunnel ICMP errors 1 1 - - --- 2026-08-04 David Lee Accepted
[nf] netfilter: nfnetlink_log: wait for rcu grace period before freeing pernet state [nf] netfilter: nfnetlink_log: wait for rcu grace period before freeing pernet state - 1 - - --- 2026-08-03 Florian Westphal Accepted
[nf,v4,1/1] netfilter: validate L4 headers after userspace packet writes [nf,v4,1/1] netfilter: validate L4 headers after userspace packet writes - 1 - - --- 2026-08-03 Zhiling Zou Accepted
[nf,v4,1/1] netfilter: nf_conntrack: defer invalid log until after unlock netfilter: nf_conntrack: defer invalid log until after unlock - 3 1 - --- 2026-08-01 Zihan Xi Accepted
[nf,1/1] netfilter: ipset: serialize kernel-side put-byindex with swap netfilter: ipset: serialize kernel-side put-byindex with swap - 1 - - --- 2026-08-01 Zhiling Zou Not Applicable
[nft,v3] datatype: accept a numeric cgroupsv2 id on input [nft,v3] datatype: accept a numeric cgroupsv2 id on input - 1 - - --- 2026-08-01 Avinash Duduskar Accepted
[bpf,v3] bpf: Fix netns reference imbalance in conntrack kfuncs [bpf,v3] bpf: Fix netns reference imbalance in conntrack kfuncs - 2 1 - --- 2026-07-31 Chengfeng Ye Handled Elsewhere
[net-next,9/9] netfilter: conntrack: tcp: use UNACK timeout for non-closing RST packets [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,8/9] netfilter: nf_tables: call skb_valid_dst() before skb_dst() [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,7/9] netfilter: flowtable: release tunnel route on error when building forward path [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup 1 - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,6/9] net: pass dst via net_device_path in dev_fill_forward_path() [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup 1 - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,5/9] net: do not advance stack index from dev_fwd_path() [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup 1 - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,4/9] net: dsa: stop at the user device in .fill_forward_path [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,3/9] netfilter: flowtable: consolidate flowtable device check [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup 1 - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,2/9] netfilter: flowtable: consolidate net_device field in nft_forward_info struct [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup 1 - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup [net-next,1/9] netfilter: conncount: normalize tuple and zone on successful ct lookup - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net-next,0/9] Netfilter updates for net-next - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,10/10] netfilter: nft_ct: move custom expectation support to helper [net,01/10] ipvs: stop estimator after disabled calc phase - 1 - - --- 2026-07-31 Pablo Neira Ayuso Changes Requested
[net,09/10] ipvs: return the csum validation for forward hook [net,01/10] ipvs: stop estimator after disabled calc phase - 1 - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,08/10] ipvs: avoid out-of-bounds write in ip_vs_nat_icmp [net,01/10] ipvs: stop estimator after disabled calc phase - 1 - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,07/10] netfilter: ipset: switch to rcu work [net,01/10] ipvs: stop estimator after disabled calc phase - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,06/10] netfilter: ipset: add and use mtype_del_cidr_all helper [net,01/10] ipvs: stop estimator after disabled calc phase - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,05/10] netfilter: ipset: add small wrappers for hash and bucket sizes [net,01/10] ipvs: stop estimator after disabled calc phase - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,04/10] netfilter: ipset: switch ext_size to atomic64_t [net,01/10] ipvs: stop estimator after disabled calc phase - 1 - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,03/10] netfilter: ipset: rework cidr bookkeeping [net,01/10] ipvs: stop estimator after disabled calc phase - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,02/10] netfilter: ebt_nflog: pin the NFLOG backend [net,01/10] ipvs: stop estimator after disabled calc phase - 1 - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,01/10] ipvs: stop estimator after disabled calc phase [net,01/10] ipvs: stop estimator after disabled calc phase 1 1 - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[net,00/10] Netfilter/IPVS fixes for net - - - - --- 2026-07-31 Pablo Neira Ayuso Accepted
[nf-next] netfilter: conntrack: sctp: validate vtag before state changes [nf-next] netfilter: conntrack: sctp: validate vtag before state changes - - - - --- 2026-07-31 Yizhou Zhao New
[nf,v4,3/3] ipvs: separate destination availability state ipvs: fix destination overload state updates - 1 - - --- 2026-07-31 Yizhou Zhao Accepted
[nf,v4,2/3] ipvs: properly update the overload flag on dest edit ipvs: fix destination overload state updates - 1 - - --- 2026-07-31 Yizhou Zhao Accepted
[nf,v4,1/3] ipvs: add totalconns for dest ipvs: fix destination overload state updates - 1 - - --- 2026-07-31 Yizhou Zhao Accepted
ipvs: clear IPv4 options after rebasing tunnel ICMP errors ipvs: clear IPv4 options after rebasing tunnel ICMP errors - 1 - - --- 2026-07-31 David Lee New
netfilter: nf_conntrack: prevent helper extension relocation netfilter: nf_conntrack: prevent helper extension relocation - 1 - - --- 2026-07-31 David Lee Not Applicable
[nf,v3,1/1] netfilter: nf_conntrack: defer invalid log until after unlock netfilter: nf_conntrack: defer invalid log until after unlock - 3 1 - --- 2026-07-31 Zihan Xi Changes Requested
[nf-next] netfilter: add DEBUG_NET_WARN_ON_ONCE to skb_set_nfct() [nf-next] netfilter: add DEBUG_NET_WARN_ON_ONCE to skb_set_nfct() - - - - --- 2026-07-31 Pablo Neira Ayuso Changes Requested
[nf,1/1] netfilter: bridge: release template ct on non-IP path netfilter: bridge: release template ct on non-IP path - 1 - - --- 2026-07-31 Zhiling Zou Accepted
[nf,v3,1/1] netfilter: validate L4 headers after userspace packet writes [nf,v3,1/1] netfilter: validate L4 headers after userspace packet writes - 1 - - --- 2026-07-31 Zhiling Zou Changes Requested
[6.1.y] netfilter: nf_conntrack_expect: restore helper propagation via expectation [6.1.y] netfilter: nf_conntrack_expect: restore helper propagation via expectation - 2 - 1 --- 2026-07-30 Ilya Maximets Awaiting Upstream
[6.18.y] netfilter: nf_conntrack_expect: restore helper propagation via expectation [6.18.y] netfilter: nf_conntrack_expect: restore helper propagation via expectation - 2 - 1 --- 2026-07-30 Ilya Maximets Awaiting Upstream
[nf,5/5] netfilter: ipset: switch to rcu work netfilter: ipset fixes and rhastable prep work - - - - --- 2026-07-30 Florian Westphal Accepted
[nf,4/5] netfilter: ipset: add and use mtype_del_cidr_all helper netfilter: ipset fixes and rhastable prep work - - - - --- 2026-07-30 Florian Westphal Accepted
[nf,3/5] netfilter: ipset: add small wrappers for hash and bucket sizes netfilter: ipset fixes and rhastable prep work - - - - --- 2026-07-30 Florian Westphal Accepted
[nf,2/5] netfilter: ipset: switch ext_size to atomic64_t netfilter: ipset fixes and rhastable prep work - 1 - - --- 2026-07-30 Florian Westphal Accepted
[nf,1/5] netfilter: ipset: rework cidr bookkeeping netfilter: ipset fixes and rhastable prep work - - - - --- 2026-07-30 Florian Westphal Accepted
[nf,v3,2/2] ipvs: return the csum validation for forward hook ipvs: csum validations, part 2 - 1 - - --- 2026-07-30 Julian Anastasov Accepted
[nf,v3,1/2] ipvs: avoid out-of-bounds write in ip_vs_nat_icmp ipvs: csum validations, part 2 - 1 - - --- 2026-07-30 Julian Anastasov Accepted
[nf,v2] netfilter: nft_ct: move custom expectation support to helper [nf,v2] netfilter: nft_ct: move custom expectation support to helper - 1 - - --- 2026-07-30 Pablo Neira Ayuso Changes Requested
[nf,v2,2/2] netfilter: nf_conntrack_tcp: defer tcp_in_window invalid logging until after unlock netfilter: fix TCP conntrack invalid-log deadlock - 1 1 - --- 2026-07-30 Zihan Xi Changes Requested
[nf,v2,1/2] netfilter: nf_conntrack_tcp: defer timeout-lowering invalid log until after unlock netfilter: fix TCP conntrack invalid-log deadlock - 1 1 - --- 2026-07-30 Zihan Xi Changes Requested
« 1 2 ... 3 4 5315 316 »