Show patches with: Submitter = Florian Westphal       |    Archived = No       |   2475 patches
« 1 2 3 424 25 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[nf-next] netfilter: merge ipv4+ipv6 confirm functions [nf-next] netfilter: merge ipv4+ipv6 confirm functions - - - - --- 2022-11-09 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: avoid access to free'd chain info in nft_commit_release [nf] netfilter: nf_tables: avoid access to free'd chain info in nft_commit_release - 1 - - --- 2022-10-24 Florian Westphal pablo Superseded
[nf-next] netfilter: nf_tables: nft_objref: make it builtin [nf-next] netfilter: nf_tables: nft_objref: make it builtin - - - - --- 2022-10-21 Florian Westphal pablo Accepted
[nf-next] netfilter: nf_tables: reduce nft_pktinfo by 8 bytes [nf-next] netfilter: nf_tables: reduce nft_pktinfo by 8 bytes - - - - --- 2022-10-14 Florian Westphal pablo Accepted
[nf-next] netfilter: conntrack: use siphash_4u64 [nf-next] netfilter: conntrack: use siphash_4u64 - - - - --- 2022-10-14 Florian Westphal pablo Changes Requested
[net,3/3] selftests: netfilter: Fix nft_fib.sh for all.rp_filter=1 [net,1/3] selftests: netfilter: Test reverse path filtering - 1 - - --- 2022-10-12 Florian Westphal strlen Accepted
[net,2/3] netfilter: rpfilter/fib: Populate flowic_l3mdev field [net,1/3] selftests: netfilter: Test reverse path filtering - - 2 - --- 2022-10-12 Florian Westphal strlen Accepted
[net,1/3] selftests: netfilter: Test reverse path filtering [net,1/3] selftests: netfilter: Test reverse path filtering - - 1 - --- 2022-10-12 Florian Westphal strlen Accepted
[net,0/3] netfilter fixes for net - - - - --- 2022-10-12 Florian Westphal strlen Accepted
[net,5/5] netfilter: nf_ct_ftp: fix deadlock when nat rewrite is needed [net,1/5] netfilter: conntrack: remove nf_conntrack_helper documentation - 1 - - --- 2022-09-21 Florian Westphal strlen Accepted
[net,4/5] netfilter: ebtables: fix memory leak when blob is malformed [net,1/5] netfilter: conntrack: remove nf_conntrack_helper documentation - 1 - - --- 2022-09-21 Florian Westphal strlen Accepted
[net,3/5] netfilter: nf_tables: fix percpu memory leak at nf_tables_addchain() [net,1/5] netfilter: conntrack: remove nf_conntrack_helper documentation - 1 - - --- 2022-09-21 Florian Westphal strlen Accepted
[net,2/5] netfilter: nf_tables: fix nft_counters_enabled underflow at nf_tables_addchain() [net,1/5] netfilter: conntrack: remove nf_conntrack_helper documentation - 1 - 1 --- 2022-09-21 Florian Westphal strlen Accepted
[net,1/5] netfilter: conntrack: remove nf_conntrack_helper documentation [net,1/5] netfilter: conntrack: remove nf_conntrack_helper documentation - - - - --- 2022-09-21 Florian Westphal strlen Accepted
[net,0/5] netfilter: bugfixes for net - - - - --- 2022-09-21 Florian Westphal strlen Accepted
[iptables-nft] iptables-nft: must withdraw PAYLOAD flag after parsing [iptables-nft] iptables-nft: must withdraw PAYLOAD flag after parsing - 1 - - --- 2022-09-19 Florian Westphal pablo Changes Requested
[net,4/4] netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find() [net,1/4] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers - 1 - - --- 2022-09-08 Florian Westphal pablo Accepted
[net,3/4] netfilter: nf_conntrack_irc: Tighten matching on DCC message [net,1/4] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers - 1 - - --- 2022-09-08 Florian Westphal pablo Accepted
[net,2/4] selftests: nft_concat_range: add socat support [net,1/4] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers - - - - --- 2022-09-08 Florian Westphal pablo Accepted
[net,1/4] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers [net,1/4] netfilter: nf_conntrack_sip: fix ct_sip_walk_headers - 1 - - --- 2022-09-08 Florian Westphal pablo Accepted
[net,0/4] netfilter: bugfixes for net - - - - --- 2022-09-08 Florian Westphal pablo Accepted
[net-next,8/8] netfilter: nat: avoid long-running port range loop [net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value - - - - --- 2022-09-07 Florian Westphal pablo Accepted
[net-next,7/8] netfilter: nat: move repetitive nat port reserve loop to a helper [net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value - - - - --- 2022-09-07 Florian Westphal pablo Accepted
[net-next,6/8] netfilter: move from strlcpy with unused retval to strscpy [net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value - - 1 - --- 2022-09-07 Florian Westphal pablo Accepted
[net-next,5/8] netfilter: remove NFPROTO_DECNET [net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value - - - - --- 2022-09-07 Florian Westphal pablo Accepted
[net-next,4/8] netfilter: conntrack: reduce timeout when receiving out-of-window fin or rst [net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value - - - - --- 2022-09-07 Florian Westphal pablo Accepted
[net-next,3/8] netfilter: conntrack: remove unneeded indent level [net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value - - - - --- 2022-09-07 Florian Westphal pablo Accepted
[net-next,2/8] netfilter: conntrack: ignore overly delayed tcp packets [net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value - - - - --- 2022-09-07 Florian Westphal pablo Accepted
[net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value [net-next,1/8] netfilter: conntrack: prepare tcp_in_window for ternary return value - - - - --- 2022-09-07 Florian Westphal pablo Accepted
[net-next,0/8] netfilter: patches for net-next - - - - --- 2022-09-07 Florian Westphal pablo Accepted
[nf-next,2/2] netfilter: nat: avoid long-running port range loop netfilter: nat: avoid long-running loops - - - - --- 2022-09-06 Florian Westphal pablo Accepted
[nf-next,1/2] netfilter: nat: move repetitive nat port reserve loop to a helper netfilter: nat: avoid long-running loops - - - - --- 2022-09-06 Florian Westphal pablo Accepted
[net,4/4] netfilter: nf_conntrack_irc: Fix forged IP logic [net,1/4] netfilter: remove nf_conntrack_helper sysctl and modparam toggles - 1 - - --- 2022-09-01 Florian Westphal pablo Accepted
[net,3/4] netfilter: nf_tables: clean up hook list when offload flags check fails [net,1/4] netfilter: remove nf_conntrack_helper sysctl and modparam toggles - 1 - - --- 2022-09-01 Florian Westphal pablo Accepted
[net,2/4] netfilter: br_netfilter: Drop dst references before setting. [net,1/4] netfilter: remove nf_conntrack_helper sysctl and modparam toggles 1 1 - - --- 2022-09-01 Florian Westphal pablo Accepted
[net,1/4] netfilter: remove nf_conntrack_helper sysctl and modparam toggles [net,1/4] netfilter: remove nf_conntrack_helper sysctl and modparam toggles 1 - - - --- 2022-09-01 Florian Westphal pablo Accepted
[net,0/4] netfilter: bug fixes for net - - - - --- 2022-09-01 Florian Westphal pablo Accepted
[nf-next] netfilter: nf_tables: add ebpf expression [nf-next] netfilter: nf_tables: add ebpf expression - - - - --- 2022-08-31 Florian Westphal pablo Changes Requested
[nft] expr: update EXPR_MAX and add missing comments [nft] expr: update EXPR_MAX and add missing comments - - - - --- 2022-08-23 Florian Westphal pablo Accepted
[net,17/17] testing: selftests: nft_flowtable.sh: rework test to detect offload failure [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - - - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,16/17] testing: selftests: nft_flowtable.sh: use random netns names [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - - - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,15/17] netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - - - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,14/17] netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,13/17] netfilter: nf_tables: disallow NFT_SET_ELEM_CATCHALL and NFT_SET_ELEM_INTERVAL_END [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,12/17] netfilter: nf_tables: NFTA_SET_ELEM_KEY_END requires concat and interval flags [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,11/17] netfilter: nf_tables: validate NFTA_SET_ELEM_OBJREF based on NFT_SET_OBJECT flag [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,10/17] netfilter: nf_tables: really skip inactive sets when allocating name [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,09/17] netfilter: nfnetlink: re-enable conntrack expectation events [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,08/17] netfilter: nf_tables: fix scheduling-while-atomic splat [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,07/17] netfilter: nf_ct_irc: cap packet search space to 4k [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 2 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,06/17] netfilter: nf_ct_ftp: prefer skb_linearize [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 2 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,05/17] netfilter: nf_ct_h323: cap packet size at 64k [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 2 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,04/17] netfilter: nf_ct_sane: remove pseudo skb linearization [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 2 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,03/17] netfilter: nf_tables: possible module reference underflow in error path [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,02/17] netfilter: nf_tables: disallow NFTA_SET_ELEM_KEY_END with NFT_SET_ELEM_INTERVAL_END flag [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access [net,01/17] netfilter: nf_tables: use READ_ONCE and WRITE_ONCE for shared generation id access - 1 - - --- 2022-08-17 Florian Westphal pablo Accepted
[net,00/17] netfilter: conntrack and nf_tables bug fixes - - - - --- 2022-08-17 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: fix scheduling-while-atomic splat [nf] netfilter: nf_tables: fix scheduling-while-atomic splat - 1 - - --- 2022-08-11 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: fix null deref due to zeroed list head [nf] netfilter: nf_tables: fix null deref due to zeroed list head - 1 - - --- 2022-08-09 Florian Westphal pablo Accepted
[nf,4/4] netfilter: conntrack_irc: cap packet search space to 4k netfilter: conntrack: remove 64kb max size assumptions - 2 - - --- 2022-08-09 Florian Westphal pablo Accepted
[nf,3/4] netfilter: conntrack_ftp: prefer skb_linearize netfilter: conntrack: remove 64kb max size assumptions - 2 - - --- 2022-08-09 Florian Westphal pablo Accepted
[nf,2/4] netfilter: conntrack: h323: cap packet size at 64k netfilter: conntrack: remove 64kb max size assumptions - 2 - - --- 2022-08-09 Florian Westphal pablo Accepted
[nf,1/4] netfilter: conntrack: sane: remove pseudo skb linearization netfilter: conntrack: remove 64kb max size assumptions - 2 - - --- 2022-08-09 Florian Westphal pablo Accepted
[nft,7/7] src: allow anon set concatenation with ether and vlan really handle stacked l2 headers - - - - --- 2022-07-27 Florian Westphal pablo Changes Requested
[nft,6/7] evaluate: search stacked header list for matching payload dep really handle stacked l2 headers - - - - --- 2022-07-27 Florian Westphal pablo Changes Requested
[nft,5/7] tests: add a test case for ether and vlan listing really handle stacked l2 headers - - - - --- 2022-07-27 Florian Westphal pablo Changes Requested
[nft,4/7] debug: dump the l2 protocol stack really handle stacked l2 headers - - - - --- 2022-07-27 Florian Westphal pablo Changes Requested
[nft,3/7] proto: track full stack of seen l2 protocols, not just cumulative offset really handle stacked l2 headers - - - - --- 2022-07-27 Florian Westphal pablo Changes Requested
[nft,2/7] netlink_delinearize: postprocess binary ands in set expressions really handle stacked l2 headers - - - - --- 2022-07-27 Florian Westphal pablo Changes Requested
[nft,1/7] netlink_delinearize: allow postprocessing on concatenated elements really handle stacked l2 headers - - - - --- 2022-07-27 Florian Westphal pablo Changes Requested
[nf-next] netfilter: flowtable: prefer refcount_inc [nf-next] netfilter: flowtable: prefer refcount_inc - - - - --- 2022-07-07 Florian Westphal pablo Accepted
[nf,v3] netfilter: conntrack: fix crash due to confirmed bit load reordering [nf,v3] netfilter: conntrack: fix crash due to confirmed bit load reordering 1 1 - - --- 2022-07-06 Florian Westphal pablo Accepted
[nf-next,6/6] netfilter: nf_tables: move nft_cmp_fast_mask to where its used netfilter: sparse fixups - - - - --- 2022-06-23 Florian Westphal pablo Accepted
[nf-next,5/6] netfilter: nf_tables: use correct integer types netfilter: sparse fixups - - - - --- 2022-06-23 Florian Westphal pablo Accepted
[nf-next,4/6] netfilter: nf_tables: add and use BE register load-store helpers netfilter: sparse fixups - - - - --- 2022-06-23 Florian Westphal pablo Accepted
[nf-next,3/6] netfilter: nf_tables: use the correct get/put helpers netfilter: sparse fixups - - - - --- 2022-06-23 Florian Westphal pablo Accepted
[nf-next,2/6] netfilter: x_tables: use correct integer types netfilter: sparse fixups - - - - --- 2022-06-23 Florian Westphal pablo Accepted
[nf-next,1/6] netfilter: nfnetlink: add missing __be16 cast netfilter: sparse fixups - - - - --- 2022-06-23 Florian Westphal pablo Accepted
[nf] netfilter: nf_tables: avoid skb access on nf_stolen [nf] netfilter: nf_tables: avoid skb access on nf_stolen - - - - --- 2022-06-22 Florian Westphal pablo Accepted
[nf-next,v2,3/3] netfilter: h323: merge nat hook pointers into one netfilter: conntrack sparse annotations - - - - --- 2022-06-22 Florian Westphal pablo Accepted
[nf-next,v2,2/3] netfilter: nf_conntrack: use rcu accessors where needed netfilter: conntrack sparse annotations - - - - --- 2022-06-22 Florian Westphal pablo Accepted
[nf-next,v2,1/3] netfilter: nf_conntrack: add missing __rcu annotations netfilter: conntrack sparse annotations - - - - --- 2022-06-22 Florian Westphal pablo Accepted
[nf] netfilter: br_netfilter: do not skip all hooks with 0 priority [nf] netfilter: br_netfilter: do not skip all hooks with 0 priority - - - - --- 2022-06-21 Florian Westphal pablo Accepted
[nf-next,3/3] netfilter: h323: merge nat hook pointers into one netfilter: conntrack sparse annotations - - - - --- 2022-06-21 Florian Westphal pablo Changes Requested
[nf-next,2/3] netfilter: nf_conntrack: use rcu accessors where needed netfilter: conntrack sparse annotations - - - - --- 2022-06-21 Florian Westphal pablo Changes Requested
[nf-next,1/3] netfilter: nf_conntrack: add missing __rcu annotations netfilter: conntrack sparse annotations - - - - --- 2022-06-21 Florian Westphal pablo Changes Requested
[nf,2/2] netfilter: nf_dup_netdev: add and use recursion counter netfilter: fix two nf_dup bugs with egress hook - 1 - - --- 2022-06-20 Florian Westphal pablo Accepted
[nf,1/2] netfilter: nf_dup_netdev: do not push mac header a second time netfilter: fix two nf_dup bugs with egress hook - 1 - - --- 2022-06-20 Florian Westphal pablo Accepted
[nft] Revert "scanner: flags: move to own scope" [nft] Revert "scanner: flags: move to own scope" - 1 - - --- 2022-06-10 Florian Westphal strlen Accepted
[nf] netfilter: nat: really support inet nat without l3 address [nf] netfilter: nat: really support inet nat without l3 address - 1 - - --- 2022-06-01 Florian Westphal pablo Accepted
[nf] netfilter: use get_random_u32 instead of prandom [nf] netfilter: use get_random_u32 instead of prandom - 2 - - --- 2022-05-18 Florian Westphal pablo Accepted
[nf-next] netfilter: cttimeout: fix slab-out-of-bounds read in cttimeout_net_exit [nf-next] netfilter: cttimeout: fix slab-out-of-bounds read in cttimeout_net_exit - 1 - - --- 2022-05-17 Florian Westphal pablo Accepted
[nf-next] netfilter: conntrack: re-fetch conntrack after insertion [nf-next] netfilter: conntrack: re-fetch conntrack after insertion - 2 - - --- 2022-05-17 Florian Westphal pablo Accepted
[nf-next] netfilter: nfnetlink: fix warn in nfnetlink_unbind [nf-next] netfilter: nfnetlink: fix warn in nfnetlink_unbind - 1 - - --- 2022-05-17 Florian Westphal pablo Accepted
[nf-next] netfilter: conntrack: remove pr_debug callsites from tcp tracker [nf-next] netfilter: conntrack: remove pr_debug callsites from tcp tracker - - - - --- 2022-05-12 Florian Westphal pablo Accepted
[nf-next] netfilter: conntrack: do not disable bh during destruction [nf-next] netfilter: conntrack: do not disable bh during destruction - - - - --- 2022-05-10 Florian Westphal pablo Accepted
[nft,3/3] sets_with_ifnames: add test case for concatenated range nftables: add support for wildcard interfaces - - - - --- 2022-04-29 Florian Westphal pablo Accepted
[nft,2/3] segtree: add pretty-print support for wildcard strings in concatenated sets nftables: add support for wildcard interfaces - - - - --- 2022-04-29 Florian Westphal pablo Accepted
[nft,1/3] netlink: swap byteorder for host-endian concat data nftables: add support for wildcard interfaces - - - - --- 2022-04-29 Florian Westphal pablo Accepted
[v2,nf] netfilter: nft_socket: only do sk lookups when indev is available [v2,nf] netfilter: nft_socket: only do sk lookups when indev is available - 1 - - --- 2022-04-28 Florian Westphal pablo Accepted
« 1 2 3 424 25 »