Show patches with: Submitter = Florian Westphal       |   3730 patches
« 1 2 3 437 38 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[net,10/10] netfilter: nf_tables: fix use-after-free in nf_tables_addchain() [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 1 - - --- 2026-02-17 Florian Westphal New
[net,09/10] net: remove WARN_ON_ONCE when accessing forward path array [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 1 - - --- 2026-02-17 Florian Westphal New
[net,08/10] ipvs: do not keep dest_dst if dev is going down [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 1 - - --- 2026-02-17 Florian Westphal New
[net,07/10] ipvs: skip ipv6 extension headers for csum checks [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 2 - - --- 2026-02-17 Florian Westphal New
[net,06/10] include: uapi: netfilter_bridge.h: Cover for musl libc [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - - - - --- 2026-02-17 Florian Westphal New
[net,05/10] netfilter: nf_conntrack_h323: don't pass uninitialised l3num value [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 1 - - --- 2026-02-17 Florian Westphal New
[net,04/10] netfilter: nf_tables: revert commit_mutex usage in reset path [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 3 - - --- 2026-02-17 Florian Westphal New
[net,03/10] netfilter: nft_quota: use atomic64_xchg for reset [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 3 - - --- 2026-02-17 Florian Westphal New
[net,02/10] netfilter: nft_counter: serialize reset with spinlock [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - 3 - - --- 2026-02-17 Florian Westphal New
[net,01/10] netfilter: annotate NAT helper hook pointers with __rcu [net,01/10] netfilter: annotate NAT helper hook pointers with __rcu - - - - --- 2026-02-17 Florian Westphal New
[net,00/10] netfilter: updates for net - - - - --- 2026-02-17 Florian Westphal New
[nf-next,2/2] netfilter: nft_fib_ipv6: switch to fib6_lookup netfilter: nft_fib_ipv6: switch to fib6_lookup - - - - --- 2026-02-12 Florian Westphal Changes Requested
[nf-next,1/2] ipv6: export fib6_lookup for nft_fib_ipv6 netfilter: nft_fib_ipv6: switch to fib6_lookup - - - - --- 2026-02-12 Florian Westphal Changes Requested
[nf] netfilter: nf_conntrack_h323: don't pass uninitialised l3num value [nf] netfilter: nf_conntrack_h323: don't pass uninitialised l3num value - 1 - - --- 2026-02-11 Florian Westphal Under Review
[v2,net-next,11/11] netfilter: nft_set_rbtree: validate open interval overlap [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,10/11] netfilter: nft_set_rbtree: validate element belonging to interval [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,09/11] netfilter: nft_set_rbtree: check for partial overlaps in anonymous sets [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,08/11] netfilter: nft_set_rbtree: fix bogus EEXIST with NLM_F_CREATE with null interval [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,07/11] netfilter: nft_counter: fix reset of counters on 32bit archs [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,06/11] netfilter: nft_set_hash: fix get operation on big endian [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,05/11] selftests: netfilter: add IPV6_TUNNEL to config [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert 1 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,04/11] netfilter: flowtable: dedicated slab for flow entry [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - - - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,03/11] selftests: netfilter: nft_queue.sh: add udp fraglist gro test case [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - - - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,02/11] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert [v2,net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-06 Florian Westphal Accepted
[v2,net-next,00/11] netfilter: updates for net-next - - - - --- 2026-02-06 Florian Westphal Accepted
[net-next,11/11] netfilter: nft_counter: fix reset of counters on 32bit archs netfilter: updates for net-next - 1 - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,10/11] netfilter: nft_set_rbtree: validate open interval overlap netfilter: updates for net-next - 2 - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,09/11] netfilter: nft_set_rbtree: validate element belonging to interval netfilter: updates for net-next - 1 - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,08/11] netfilter: nft_set_rbtree: check for partial overlaps in anonymous sets netfilter: updates for net-next - 1 - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,07/11] netfilter: nft_set_rbtree: fix bogus EEXIST with NLM_F_CREATE with null interval netfilter: updates for net-next - 2 - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,06/11] netfilter: nft_set_hash: fix get operation on big endian netfilter: updates for net-next - 1 - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,05/11] selftests: netfilter: add IPV6_TUNNEL to config netfilter: updates for net-next 1 1 - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,04/11] netfilter: flowtable: dedicated slab for flow entry netfilter: updates for net-next - - - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,03/11] selftests: netfilter: nft_queue.sh: add udp fraglist gro test case netfilter: updates for net-next - - - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,02/11] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation netfilter: updates for net-next - 1 - - --- 2026-02-05 Florian Westphal Changes Requested
[net-next,01/11] netfilter: nft_set_rbtree: don't gc elements on insert netfilter: updates for net-next - 1 - - --- 2026-02-05 Florian Westphal Changes Requested
[net,1/1] netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() [net,1/1] netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() - 1 - - --- 2026-02-05 Florian Westphal Accepted
[net,0/1] netfilter: update for net - - - - --- 2026-02-05 Florian Westphal Accepted
[v2,nf-next] netfilter: nft_set_rbtree: don't gc elements on insert [v2,nf-next] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - - --- 2026-02-02 Florian Westphal Accepted
[nf-next] selftests: netfilter: add IPV6_TUNNEL to config [nf-next] selftests: netfilter: add IPV6_TUNNEL to config 1 1 - - --- 2026-01-30 Florian Westphal Accepted
[v2,nf-next] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation [v2,nf-next] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation - 1 - - --- 2026-01-30 Florian Westphal Accepted
[nf-next] netfilter: nft_set_rbtree: don't gc elements on insert [nf-next] netfilter: nft_set_rbtree: don't gc elements on insert - 1 - 1 --- 2026-01-29 Florian Westphal Changes Requested
[nft] tests: shell: add test case for interval set with timeout and aborted transaction [nft] tests: shell: add test case for interval set with timeout and aborted transaction - - - - --- 2026-01-29 Florian Westphal Accepted
[v2,net-next,7/7] netfilter: nfnetlink_queue: optimize verdict lookup with hash table [v2,net-next,1/7] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto… - - - - --- 2026-01-29 Florian Westphal Handled Elsewhere
[v2,net-next,6/7] netfilter: xt_time: use is_leap_year() helper [v2,net-next,1/7] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto… - - 1 - --- 2026-01-29 Florian Westphal Handled Elsewhere
[v2,net-next,5/7] selftests: netfilter: nft_flowtable.sh: Add IP6IP6 flowtable selftest [v2,net-next,1/7] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto… - - - - --- 2026-01-29 Florian Westphal Handled Elsewhere
[v2,net-next,4/7] netfilter: flowtable: Add IP6IP6 tx sw acceleration [v2,net-next,1/7] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto… - - - - --- 2026-01-29 Florian Westphal Handled Elsewhere
[v2,net-next,3/7] netfilter: flowtable: Add IP6IP6 rx sw acceleration [v2,net-next,1/7] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto… - - - - --- 2026-01-29 Florian Westphal Handled Elsewhere
[v2,net-next,2/7] netfilter: Introduce tunnel metadata info in nf_flowtable_ctx struct [v2,net-next,1/7] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto… - - - - --- 2026-01-29 Florian Westphal Handled Elsewhere
[v2,net-next,1/7] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto… [v2,net-next,1/7] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto… - - - - --- 2026-01-29 Florian Westphal Handled Elsewhere
[v2,net-next,0/7] netfilter: updates for net-next - - - - --- 2026-01-29 Florian Westphal Handled Elsewhere
[net-next,9/9] selftests: netfilter: nft_queue.sh: add udp fraglist gro test case [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - - - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,8/9] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - 1 - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,7/9] netfilter: nfnetlink_queue: optimize verdict lookup with hash table [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - - - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,6/9] netfilter: xt_time: use is_leap_year() helper [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - - 1 - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,5/9] selftests: netfilter: nft_flowtable.sh: Add IP6IP6 flowtable selftest [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - - - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,4/9] netfilter: flowtable: Add IP6IP6 tx sw acceleration [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - - - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,3/9] netfilter: flowtable: Add IP6IP6 rx sw acceleration [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - - - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,2/9] netfilter: Introduce tunnel metadata info in nf_flowtable_ctx struct [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - - - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… [net-next,1/9] netfilter: Add ctx pointer in nf_flow_skb_encap_protocol/nf_flow_ip4_tunnel_proto si… - - - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[net-next,0/9] netfilter: updates for net-next - - - - --- 2026-01-28 Florian Westphal Handled Elsewhere
[nf-next] netfilter: nft_set_hash: fix get operation on big endian [nf-next] netfilter: nft_set_hash: fix get operation on big endian - 1 - - --- 2026-01-27 Florian Westphal Accepted
[nf-next,2/2] selftests: netfilter: nft_queue.sh: add udp fraglist gro test case [nf-next,1/2] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation - - - - --- 2026-01-26 Florian Westphal Changes Requested
[nf-next,1/2] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation [nf-next,1/2] netfilter: nfnetlink_queue: do shared-unconfirmed check before segmentation - 1 - - --- 2026-01-26 Florian Westphal Changes Requested
[net-next,4/4] netfilter: nft_set_rbtree: remove seqcount_rwlock_t [net-next,1/4] netfilter: nf_tables: add .abort_skip_removal flag for set types - - - - --- 2026-01-22 Florian Westphal Handled Elsewhere
[net-next,3/4] netfilter: nft_set_rbtree: use binary search array in get command [net-next,1/4] netfilter: nf_tables: add .abort_skip_removal flag for set types - - - - --- 2026-01-22 Florian Westphal Handled Elsewhere
[net-next,2/4] netfilter: nft_set_rbtree: translate rbtree to array for binary search [net-next,1/4] netfilter: nf_tables: add .abort_skip_removal flag for set types - - - - --- 2026-01-22 Florian Westphal Handled Elsewhere
[net-next,1/4] netfilter: nf_tables: add .abort_skip_removal flag for set types [net-next,1/4] netfilter: nf_tables: add .abort_skip_removal flag for set types - - - - --- 2026-01-22 Florian Westphal Handled Elsewhere
[net-next,0/4] netfilter: updates for net-next - - - - --- 2026-01-22 Florian Westphal Handled Elsewhere
[nft] monitor: fix memleak in setelem cb [nft] monitor: fix memleak in setelem cb - - - - --- 2026-01-21 Florian Westphal Accepted
[net-next,10/10] netfilter: xt_tcpmss: check remaining length before reading optlen [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - - - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,09/10] netfilter: nf_conncount: fix tracking of connections from localhost [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - 1 - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,08/10] netfilter: nft_compat: add more restrictions on netlink attributes [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - 1 1 - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,07/10] netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -> GFP_KERNEL_ACCOUNT alloca… [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - - - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,06/10] netfilter: nf_conntrack: don't rely on implicit includes [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - - - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,05/10] netfilter: don't include xt and nftables.h in unrelated subsystems [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - - - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,04/10] netfilter: nf_conntrack: enable icmp clash support [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - - - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,03/10] netfilter: nf_conncount: increase the connection clean up limit to 64 [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - 1 - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,02/10] netfilter: nf_conntrack: Add allow_clash to generic protocol handler [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - - - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,01/10] netfilter: nf_tables: reset table validation state on abort [net-next,01/10] netfilter: nf_tables: reset table validation state on abort - 1 - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[net-next,00/10] Subject: netfilter: updates for net-next - - - - --- 2026-01-20 Florian Westphal Handled Elsewhere
[nft] parser: move qualified meta expression parsing to flex/bison [nft] parser: move qualified meta expression parsing to flex/bison 1 - - - --- 2026-01-20 Florian Westphal Accepted
[nft,v2] parser_bison: on syntax errors, output expected tokens [nft,v2] parser_bison: on syntax errors, output expected tokens - - - - --- 2026-01-20 Florian Westphal Accepted
[nf] netfilter: xt_tcpmss: check remaining length before reading optlen [nf] netfilter: xt_tcpmss: check remaining length before reading optlen - - - - --- 2026-01-19 Florian Westphal Accepted
[nf-next] netfilter: nft_compat: add more restrictions on netlink attributes [nf-next] netfilter: nft_compat: add more restrictions on netlink attributes - 1 1 - --- 2026-01-16 Florian Westphal Accepted
[nft] tests: shell: add small packetpath test for hash and rbtree types [nft] tests: shell: add small packetpath test for hash and rbtree types - - - - --- 2026-01-15 Florian Westphal Accepted
[nft] tests: shell: add small packetpath test for bitmap set type [nft] tests: shell: add small packetpath test for bitmap set type - - - - --- 2026-01-15 Florian Westphal Accepted
[v2,nf-next] netfilter: nf_conntrack: don't rely on implicit includes [v2,nf-next] netfilter: nf_conntrack: don't rely on implicit includes - - - - --- 2026-01-08 Florian Westphal Accepted
[nf-next] netfilter: nf_conntrack: enable icmp clash support [nf-next] netfilter: nf_conntrack: enable icmp clash support - - - - --- 2026-01-08 Florian Westphal Accepted
[nf-next,2/2] netfilter: don't include xt and nftables.h in unrelated subsystems net: netfilter: avoid implicit includes - - - - --- 2026-01-07 Florian Westphal Accepted
[nf-next,1/2] netfilter: nf_conntrack: don't rely on implicit includes net: netfilter: avoid implicit includes - - - - --- 2026-01-07 Florian Westphal Superseded
[nf-next] netfilter: nf_tables: reset table validation state on abort [nf-next] netfilter: nf_tables: reset table validation state on abort - 1 - - --- 2026-01-05 Florian Westphal Accepted
[net,6/6] netfilter: nf_conncount: update last_gc only when GC has been performed [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2026-01-02 Florian Westphal Accepted
[net,5/6] netfilter: nf_tables: fix memory leak in nf_tables_newrule() [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2026-01-02 Florian Westphal Accepted
[net,4/6] netfilter: replace -EEXIST with -EBUSY [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - - - - --- 2026-01-02 Florian Westphal Accepted
[net,3/6] netfilter: nft_synproxy: avoid possible data-race on update operation [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2026-01-02 Florian Westphal Accepted
[net,2/6] selftests: netfilter: nft_concat_range.sh: add check for overlap detection bug [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - - - - --- 2026-01-02 Florian Westphal Accepted
[net,1/6] netfilter: nft_set_pipapo: fix range overlap detection [net,1/6] netfilter: nft_set_pipapo: fix range overlap detection - 1 - - --- 2026-01-02 Florian Westphal Accepted
[net,0/6] netfilter: updates for net - - - - --- 2026-01-02 Florian Westphal Accepted
« 1 2 3 437 38 »