Show patches with: Submitter = Florian Westphal       |    Archived = No       |   2475 patches
« 1 2 3 424 25 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[net-next] selftests: netfilter: nft_concat_range.sh: reduce debug kernel run time [net-next] selftests: netfilter: nft_concat_range.sh: reduce debug kernel run time - - - - --- 2024-04-30 Florian Westphal New
[net-next] selftests: netfilter: avoid test timeouts on debug kernels [net-next] selftests: netfilter: avoid test timeouts on debug kernels - - - - --- 2024-04-29 Florian Westphal New
[nf-next,v2,8/8] netfilter: nft_set_pipapo: remove dirty flag nft_set_pipapo: remove cannot-fail allocations on commit and abort - - 1 - --- 2024-04-25 Florian Westphal New
[nf-next,v2,7/8] netfilter: nft_set_pipapo: move cloning of match info to insert/removal path nft_set_pipapo: remove cannot-fail allocations on commit and abort - - 1 - --- 2024-04-25 Florian Westphal New
[nf-next,v2,6/8] netfilter: nft_set_pipapo: prepare pipapo_get helper for on-demand clone nft_set_pipapo: remove cannot-fail allocations on commit and abort - - 1 - --- 2024-04-25 Florian Westphal New
[nf-next,v2,5/8] netfilter: nft_set_pipapo: merge deactivate helper into caller nft_set_pipapo: remove cannot-fail allocations on commit and abort - - 1 - --- 2024-04-25 Florian Westphal New
[nf-next,v2,4/8] netfilter: nft_set_pipapo: prepare walk function for on-demand clone nft_set_pipapo: remove cannot-fail allocations on commit and abort - - 1 - --- 2024-04-25 Florian Westphal New
[nf-next,v2,3/8] netfilter: nft_set_pipapo: prepare destroy function for on-demand clone nft_set_pipapo: remove cannot-fail allocations on commit and abort - - 1 - --- 2024-04-25 Florian Westphal New
[nf-next,v2,2/8] netfilter: nft_set_pipapo: make pipapo_clone helper return NULL nft_set_pipapo: remove cannot-fail allocations on commit and abort - - 1 - --- 2024-04-25 Florian Westphal New
[nf-next,v2,1/8] netfilter: nft_set_pipapo: move prove_locking helper around nft_set_pipapo: remove cannot-fail allocations on commit and abort - - 1 - --- 2024-04-25 Florian Westphal New
[nf-next] netfilter: conntrack: remove flowtable early-drop test [nf-next] netfilter: conntrack: remove flowtable early-drop test - - - - --- 2024-04-23 Florian Westphal New
[nf] netfilter: conntrack: documentation: remove reference to non-existent sysctl [nf] netfilter: conntrack: documentation: remove reference to non-existent sysctl - 1 - - --- 2024-04-19 Florian Westphal New
[nf-next] netfilter: nft_byteorder: remove multi-register support [nf-next] netfilter: nft_byteorder: remove multi-register support - 1 - - --- 2024-02-14 Florian Westphal New
[nft] rule: do not crash if to-be-printed flowtable lacks priority [nft] rule: do not crash if to-be-printed flowtable lacks priority - - - - --- 2024-01-12 Florian Westphal New
[v3,nft] support for afl++ (american fuzzy lop++) fuzzer [v3,nft] support for afl++ (american fuzzy lop++) fuzzer - - - - --- 2023-12-19 Florian Westphal New
[v2,nf] netfilter: nft_set_pipapo: do not free live element [v2,nf] netfilter: nft_set_pipapo: do not free live element - 1 1 - --- 2024-04-10 Florian Westphal Accepted
[nf] netfilter: nf_tables: use kzalloc for hook allocation [nf] netfilter: nf_tables: use kzalloc for hook allocation - 1 - - --- 2024-02-21 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: set dormant flag on hook register failure [nf] netfilter: nf_tables: set dormant flag on hook register failure - 1 - - --- 2024-02-19 Florian Westphal pablo Accepted
[nf,v2,3/3] netfilter: nft_set_pipapo: remove scratch_aligned pointer netfilter: nft_set_pipapo: nft_set_pipapo: map_index must be per set - 1 1 - --- 2024-02-07 Florian Westphal Accepted
[nf,v2,2/3] netfilter: nft_set_pipapo: add helper to release pcpu scratch area netfilter: nft_set_pipapo: nft_set_pipapo: map_index must be per set - - 1 - --- 2024-02-07 Florian Westphal Accepted
[nf,v2,1/3] netfilter: nft_set_pipapo: store index in scratch maps netfilter: nft_set_pipapo: nft_set_pipapo: map_index must be per set - 1 1 - --- 2024-02-07 Florian Westphal Accepted
[nf] netfilter: nfnetlink_queue: un-break NF_REPEAT [nf] netfilter: nfnetlink_queue: un-break NF_REPEAT - 1 - - --- 2024-02-06 Florian Westphal Accepted
[nf-next,9/9] netfilter: ebtables: allow xtables-nft only builds [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,8/9] netfilter: xtables: allow xtables-nft only builds [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,7/9] netfilter: arptables: allow xtables-nft only builds [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - 1 - --- 2024-01-29 Florian Westphal Accepted
[nf-next,6/9] ipvs: Simplify the allocation of ip_vs_conn slab caches [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag 1 - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,5/9] netfilter: nf_conncount: Use KMEM_CACHE instead of kmem_cache_create() [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,4/9] netfilter: nf_tables: pass flags to set backend selection routine [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,3/9] netfilter: nf_tables: Implement table adoption support [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,2/9] netfilter: nf_tables: Introduce NFT_TABLE_F_PERSIST [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag [nf-next,1/9] netfilter: uapi: Document NFT_TABLE_F_OWNER flag - 1 - - --- 2024-01-29 Florian Westphal Accepted
[nf-next,0/9] netfilter updates for -next - - - - --- 2024-01-29 Florian Westphal Accepted
[nf-next] netfilter: arptables: allow arptables-nft only builds [nf-next] netfilter: arptables: allow arptables-nft only builds - - 1 - --- 2024-01-23 Florian Westphal strlen Accepted
[nf] netfilter: nf_tables: reject QUEUE/DROP verdict parameters [nf] netfilter: nf_tables: reject QUEUE/DROP verdict parameters - 1 - - --- 2024-01-20 Florian Westphal Accepted
[nf] netfilter: nf_tables: restrict anonymous set and map names to 16 bytes [nf] netfilter: nf_tables: restrict anonymous set and map names to 16 bytes - - - - --- 2024-01-19 Florian Westphal Accepted
[nf] netfilter: nft_limit: reject configurations that cause integer overflow [nf] netfilter: nft_limit: reject configurations that cause integer overflow - - - - --- 2024-01-19 Florian Westphal Accepted
[nft,v3] src: do not merge a set with a erroneous one [nft,v3] src: do not merge a set with a erroneous one - - - - --- 2024-01-12 Florian Westphal Accepted
[nft] netlink: don't crash if prefix for < byte is requested [nft] netlink: don't crash if prefix for < byte is requested - - - - --- 2023-12-14 Florian Westphal Accepted
[nf] netfilter: nf_tables: fix 'exist' matching on bigendian arches [nf] netfilter: nf_tables: fix 'exist' matching on bigendian arches 1 3 - - --- 2023-12-04 Florian Westphal Accepted
[nf] netfilter: nft_set_pipapo: skip inactive elements during set walk [nf] netfilter: nft_set_pipapo: skip inactive elements during set walk - 1 - - --- 2023-12-01 Florian Westphal Accepted
[nf-next] netfilter: nf_tables: mark newset as dead on transaction abort [nf-next] netfilter: nf_tables: mark newset as dead on transaction abort - 1 - - --- 2023-11-27 Florian Westphal Accepted
[nf-next] netfilter: flowtable: reorder nf_flowtable struct members [nf-next] netfilter: flowtable: reorder nf_flowtable struct members - - - - --- 2023-11-20 Florian Westphal Accepted
[nf-next] netfilter: nft_set_pipapo: prefer gfp_kernel allocation [nf-next] netfilter: nft_set_pipapo: prefer gfp_kernel allocation - 1 - - --- 2023-11-20 Florian Westphal Accepted
[nf] netfilter: nat: fix ipv6 nat redirect with mapped and scoped addresses [nf] netfilter: nat: fix ipv6 nat redirect with mapped and scoped addresses - 1 - - --- 2023-11-08 Florian Westphal Accepted
[nf] netfilter: add missing module descriptions [nf] netfilter: add missing module descriptions - - - - --- 2023-11-04 Florian Westphal Accepted
[net-next,4/4] netfilter: nf_tables: Utilize NLA_POLICY_NESTED_ARRAY [net-next,1/4] netfilter: nf_nat: undo erroneous tcp edemux lookup after port clash - - - - --- 2023-09-28 Florian Westphal Accepted
[nf] netfilter: nf_tables: fix memory leak when more than 255 elements expired [nf] netfilter: nf_tables: fix memory leak when more than 255 elements expired - 1 - - --- 2023-09-19 Florian Westphal Accepted
[nf] netfilter: nf_tables: disable toggling dormant table state more than once [nf] netfilter: nf_tables: disable toggling dormant table state more than once - 1 - - --- 2023-09-15 Florian Westphal Accepted
[nf] netfilter: conntrack: fix extension size table [nf] netfilter: conntrack: fix extension size table - 1 - - --- 2023-09-12 Florian Westphal pablo Accepted
[net-next,10/10] netfilter: nf_tables: allow loop termination for pending fatal signal [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - - - --- 2023-08-22 Florian Westphal Accepted
[net-next,09/10] netfilter: xtables: refactor deprecated strncpy [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - - - --- 2023-08-22 Florian Westphal Accepted
[net-next,08/10] netfilter: x_tables: refactor deprecated strncpy [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - - - --- 2023-08-22 Florian Westphal Accepted
[net-next,07/10] netfilter: nft_meta: refactor deprecated strncpy [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - - - --- 2023-08-22 Florian Westphal Accepted
[net-next,06/10] netfilter: nft_osf: refactor deprecated strncpy [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - - - --- 2023-08-22 Florian Westphal Accepted
[net-next,05/10] netfilter: nf_tables: refactor deprecated strncpy [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - - - --- 2023-08-22 Florian Westphal Accepted
[net-next,04/10] netfilter: nf_tables: refactor deprecated strncpy [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - - - --- 2023-08-22 Florian Westphal Accepted
[net-next,03/10] netfilter: ipset: refactor deprecated strncpy [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - - - --- 2023-08-22 Florian Westphal Accepted
[net-next,02/10] netfilter: ebtables: replace zero-length array members [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - 1 - --- 2023-08-22 Florian Westphal Accepted
[net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() [net-next,01/10] netfilter: ebtables: fix fortify warnings in size_entry_mwt() - - 2 - --- 2023-08-22 Florian Westphal Accepted
[nf,2/2] selftests: netfilter: test nat source port clash resolution interaction with tcp early dem… netfilter: nf_nat: fix yet another bizarre early demux corner case - - - - --- 2023-08-15 Florian Westphal strlen Accepted
[nf,1/2] netfilter: nf_nat: undo erroneous tcp edemux lookup after port clash netfilter: nf_nat: fix yet another bizarre early demux corner case - - - - --- 2023-08-15 Florian Westphal strlen Accepted
[nf] netfilter: conntrack: don't fold port numbers into addresses before hashing [nf] netfilter: conntrack: don't fold port numbers into addresses before hashing - 1 - - --- 2023-07-04 Florian Westphal pablo Accepted
[nf] netfilter: conntrack: gre: don't set assured flag for clash entries [nf] netfilter: conntrack: gre: don't set assured flag for clash entries - 1 - - --- 2023-07-03 Florian Westphal pablo Accepted
[nf-next] netfilter: nf_tables: limit allowed range via nla_policy [nf-next] netfilter: nf_tables: limit allowed range via nla_policy - - - - --- 2023-06-21 Florian Westphal pablo Accepted
[nf,v2] netfilter: conntrack: dccp: copy entire header to stack buffer, not just basic one [nf,v2] netfilter: conntrack: dccp: copy entire header to stack buffer, not just basic one - 1 1 - --- 2023-06-21 Florian Westphal pablo Accepted
[nf-next,v2] netfilter: snat: evict closing tcp entries on reply tuple collision [nf-next,v2] netfilter: snat: evict closing tcp entries on reply tuple collision - - - - --- 2023-06-06 Florian Westphal pablo Accepted
[nf-next] netfilter: nf_tables: permit update of set size [nf-next] netfilter: nf_tables: permit update of set size - - - - --- 2023-06-06 Florian Westphal pablo Accepted
[nf-next] netfilter: ipset: remove rcu_read_lock_bh pair from ip_set_test [nf-next] netfilter: ipset: remove rcu_read_lock_bh pair from ip_set_test - - - - --- 2023-06-06 Florian Westphal pablo Accepted
[nf] testing: selftests: nft_flowtable.sh: check ingress/egress chain too [nf] testing: selftests: nft_flowtable.sh: check ingress/egress chain too - - - - --- 2023-05-09 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: fix ct untracked match breakage [nf] netfilter: nf_tables: fix ct untracked match breakage - 1 - - --- 2023-05-03 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: fix ifdef to also consider nf_tables=m [nf] netfilter: nf_tables: fix ifdef to also consider nf_tables=m - 1 - - --- 2023-04-17 Florian Westphal pablo Accepted
[nf] netfilter: br_netfilter: fix recent physdev match breakage [nf] netfilter: br_netfilter: fix recent physdev match breakage - 1 - - --- 2023-04-03 Florian Westphal pablo Accepted
[net-next,9/9] netfilter: nat: fix indentation of function arguments [net-next,1/9] netfilter: bridge: introduce broute meta statement - - - - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,8/9] netfilter: conntrack: fix typo [net-next,1/9] netfilter: bridge: introduce broute meta statement - - - - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,7/9] selftests: add a selftest for big tcp [net-next,1/9] netfilter: bridge: introduce broute meta statement - - 2 - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,6/9] netfilter: use nf_ip6_check_hbh_len in nf_ct_skb_network_trim [net-next,1/9] netfilter: bridge: introduce broute meta statement - - 3 - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,5/9] netfilter: move br_nf_check_hbh_len to utils [net-next,1/9] netfilter: bridge: introduce broute meta statement - - 3 - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,4/9] netfilter: bridge: move pskb_trim_rcsum out of br_nf_check_hbh_len [net-next,1/9] netfilter: bridge: introduce broute meta statement 1 - 2 - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,3/9] netfilter: bridge: check len before accessing more nh data [net-next,1/9] netfilter: bridge: introduce broute meta statement 1 - 2 - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,2/9] netfilter: bridge: call pskb_may_pull in br_nf_check_hbh_len [net-next,1/9] netfilter: bridge: introduce broute meta statement 1 - 2 - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,1/9] netfilter: bridge: introduce broute meta statement [net-next,1/9] netfilter: bridge: introduce broute meta statement - - - - --- 2023-03-08 Florian Westphal pablo Accepted
[net-next,0/9] Netfilter updates for net-next - - - - --- 2023-03-08 Florian Westphal pablo Accepted
[nf] netfilter: tproxy: fix deadlock due to missing BH disable [nf] netfilter: tproxy: fix deadlock due to missing BH disable - 1 - - --- 2023-03-03 Florian Westphal pablo Accepted
[nf] netfilter: ctnetlink: make event listener tracking global [nf] netfilter: ctnetlink: make event listener tracking global - 1 - - --- 2023-02-20 Florian Westphal pablo Accepted
[nf] ebtables: fix table blob use-after-free [nf] ebtables: fix table blob use-after-free - 1 - - --- 2023-02-17 Florian Westphal pablo Accepted
[nf,v2] netfilter: conntrack: fix rmmod double-free race [nf,v2] netfilter: conntrack: fix rmmod double-free race - 1 - - --- 2023-02-14 Florian Westphal pablo Accepted
[nf-next] netfilter: let reset rules clean out conntrack entries [nf-next] netfilter: let reset rules clean out conntrack entries - - - - --- 2023-02-01 Florian Westphal pablo Accepted
[nf] netfilter: br_netfilter: disable sabotage_in hook after first suppression [nf] netfilter: br_netfilter: disable sabotage_in hook after first suppression - 1 - - --- 2023-01-30 Florian Westphal pablo Accepted
[nf] Revert "netfilter: conntrack: fix bug in for_each_sctp_chunk" [nf] Revert "netfilter: conntrack: fix bug in for_each_sctp_chunk" - 1 - - --- 2023-01-26 Florian Westphal pablo Accepted
[nf-next] netfilter: conntrack: udp: fix seen-reply test [nf-next] netfilter: conntrack: udp: fix seen-reply test - 1 1 - --- 2023-01-23 Florian Westphal pablo Accepted
[net-next,9/9] netfilter: nf_tables: add support to destroy operation [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,8/9] netfilter: nf_tables: avoid retpoline overhead for some ct expression calls [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,7/9] netfilter: nf_tables: avoid retpoline overhead for objref calls [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,6/9] netfilter: nf_tables: add static key to skip retpoline workarounds [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,5/9] netfilter: ip_tables: remove clusterip target [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,4/9] netfilter: conntrack: move rcu read lock to nf_conntrack_find_get [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,3/9] netfilter: conntrack: avoid reload of ct->status [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,2/9] netfilter: conntrack: remove pr_debug calls [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets [net-next,1/9] netfilter: conntrack: sctp: use nf log infrastructure for invalid packets - - - - --- 2023-01-18 Florian Westphal strlen Accepted
[net-next,0/9] Netfilter updates for net-next - - - - --- 2023-01-18 Florian Westphal strlen Accepted
« 1 2 3 424 25 »