Show patches with: Submitter = Florian Westphal       |    Archived = No       |   2620 patches
« 1 2 3 426 27 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[nf] netfilter: ebtables: fix OOB read in compat_mtw_from_user [nf] netfilter: ebtables: fix OOB read in compat_mtw_from_user - 1 - - --- 2026-05-20 Florian Westphal New
[nf] netfilter: xt_cpu: prefer raw_smp_processor_id [nf] netfilter: xt_cpu: prefer raw_smp_processor_id - 1 - - --- 2026-05-19 Florian Westphal New
[v2,nf] netfilter: nf_conntrack_gre: fix gre keymap list corruption [v2,nf] netfilter: nf_conntrack_gre: fix gre keymap list corruption - - - - --- 2026-05-19 Florian Westphal New
[nf-next,v2] netfilter: add option for GCOV profiling [nf-next,v2] netfilter: add option for GCOV profiling 1 - - - --- 2026-05-12 Florian Westphal New
[v3,nf-next] netfilter: nft_byteorder: remove multi-register support [v3,nf-next] netfilter: nft_byteorder: remove multi-register support - 1 - - --- 2026-05-12 Florian Westphal New
[v3,nf,9/8] netfilter: bridge: eb_tables: close module init race netfilter: xtables: fix module load and teardown races - 1 - - --- 2026-05-07 Florian Westphal Accepted
[v3,nf,8/8] netfilter: x_tables: close dangling table module init race netfilter: xtables: fix module load and teardown races - 1 - - --- 2026-05-06 Florian Westphal Accepted
[v3,nf,7/8] netfilter: ebtables: close dangling table module init race netfilter: xtables: fix module load and teardown races - 1 1 - --- 2026-05-06 Florian Westphal Accepted
[v3,nf,6/8] netfilter: ebtables: move to two-stage removal scheme netfilter: xtables: fix module load and teardown races - 1 1 - --- 2026-05-06 Florian Westphal Accepted
[v3,nf,5/8] netfilter: x_tables: add and use xtables_unregister_table_exit netfilter: xtables: fix module load and teardown races - 1 1 - --- 2026-05-06 Florian Westphal Accepted
[v3,nf,4/8] netfilter: x_tables: unregister the templates first netfilter: xtables: fix module load and teardown races - 1 1 - --- 2026-05-06 Florian Westphal Accepted
[v3,nf,3/8] netfilter: x_tables: add and use xt_unregister_table_pre_exit netfilter: xtables: fix module load and teardown races - - 1 - --- 2026-05-06 Florian Westphal Accepted
[v3,nf,2/8] netfilter: xtables: allocate hook ops while under mutex netfilter: xtables: fix module load and teardown races - 3 - - --- 2026-05-06 Florian Westphal Accepted
[v3,nf,1/8] netfilter: x_tables: allow initial table replace without emitting audit log message netfilter: xtables: fix module load and teardown races - - - - --- 2026-05-06 Florian Westphal Accepted
[nft] tests: shell: also test byte-based rate limiting [nft] tests: shell: also test byte-based rate limiting - - - - --- 2026-05-05 Florian Westphal New
[nf-next] netfilter: x_tables: disable 32bit compat interface in user namespaces [nf-next] netfilter: x_tables: disable 32bit compat interface in user namespaces - - - - --- 2026-04-29 Florian Westphal New
[nf-next] netfilter: nf_conncount: use per-rule hash initval [nf-next] netfilter: nf_conncount: use per-rule hash initval - - - - --- 2026-04-29 Florian Westphal New
[nf] netfilter: nf_tables: fix netdev hook allocation memleak with dormant tables [nf] netfilter: nf_tables: fix netdev hook allocation memleak with dormant tables - 1 - - --- 2026-04-29 Florian Westphal Accepted
[nf] netfilter: xt_CT: fix usersize for v1 and v2 revision [nf] netfilter: xt_CT: fix usersize for v1 and v2 revision - 1 - - --- 2026-04-28 Florian Westphal Accepted
[nf,v3] netfilter: nf_conntrack_sip: don't use simple_strtoul [nf,v3] netfilter: nf_conntrack_sip: don't use simple_strtoul - 1 - - --- 2026-04-23 Florian Westphal Accepted
[nf,v2] netfilter: arp_tables: fix IEEE1394 ARP payload mangling [nf,v2] netfilter: arp_tables: fix IEEE1394 ARP payload mangling - 1 - - --- 2026-04-18 Florian Westphal Not Applicable
[nf-next,v2] netfilter: nft_set_rbtree: remove dead conditional [nf-next,v2] netfilter: nft_set_rbtree: remove dead conditional - - - - --- 2026-04-11 Florian Westphal New
[v2,nf-next] netfilter: nft_set_pipapo_avx2: restore performance optimization [v2,nf-next] netfilter: nft_set_pipapo_avx2: restore performance optimization - - 1 - --- 2026-04-11 Florian Westphal New
[nf-next] netfilter: nat: switch release of ops to kfree_rcu [nf-next] netfilter: nat: switch release of ops to kfree_rcu - - - - --- 2026-04-10 Florian Westphal Changes Requested
[nf-next,v2] netfilter: nfnetlink: prefer skb_mac_header helpers [nf-next,v2] netfilter: nfnetlink: prefer skb_mac_header helpers - - - - --- 2026-04-04 Florian Westphal Changes Requested
[nf] netfilter: nft_compat: tighten the nft_compat interface [nf] netfilter: nft_compat: tighten the nft_compat interface - - - - --- 2026-03-28 Florian Westphal Not Applicable
[nf] netfilter: nf_tables: reject requests exceeding NF_FLOW_RULE_ACTION_MAX actions [nf] netfilter: nf_tables: reject requests exceeding NF_FLOW_RULE_ACTION_MAX actions - - - - --- 2026-03-25 Florian Westphal Not Applicable
[nf-next,v2,defer] netfilter: nft_byteorder: remove multi-register support [nf-next,v2,defer] netfilter: nft_byteorder: remove multi-register support - 1 - - --- 2025-09-11 Florian Westphal Deferred
[nf] netfilter: nft_set_pipapo: don't return bogus extension pointer [nf] netfilter: nft_set_pipapo: don't return bogus extension pointer - 1 - - --- 2025-08-04 Florian Westphal Accepted
[nf,2/2] netfilter: ctnetlink: remove refcounting in expectation dumpers netfilter: ctnetlink: fix memory leak in ctnetlink dump - 2 - - --- 2025-08-01 Florian Westphal Accepted
[nf,1/2] netfilter: ctnetlink: fix refcount leak on table dump netfilter: ctnetlink: fix memory leak in ctnetlink dump - 1 - - --- 2025-08-01 Florian Westphal Accepted
[nf] netfilter: xt_nfacct: don't assume acct name is null-terminated [nf] netfilter: xt_nfacct: don't assume acct name is null-terminated - 1 - 1 --- 2025-07-18 Florian Westphal Accepted
[nf-next,v2,5/5] netfilter: nft_set_pipapo: prefer kvmalloc for scratch maps netfilter: nft_set updates - - 1 - --- 2025-07-09 Florian Westphal Accepted
[nf-next,v2,4/5] netfilter: nft_set_pipapo: merge pipapo_get/lookup netfilter: nft_set updates - - 1 - --- 2025-07-09 Florian Westphal Accepted
[nf-next,v2,3/5] netfilter: nft_set: remove indirection from update API call netfilter: nft_set updates - - - - --- 2025-07-09 Florian Westphal Accepted
[nf-next,v2,2/5] netfilter: nft_set: remove one argument from lookup and update functions netfilter: nft_set updates - - 1 - --- 2025-07-09 Florian Westphal Accepted
[nf-next,v2,1/5] netfilter: nft_set_pipapo: remove unused arguments netfilter: nft_set updates - - 1 - --- 2025-07-09 Florian Westphal Accepted
[nf] netfilter: nf_tables: hide clash bit from userspace [nf] netfilter: nf_tables: hide clash bit from userspace - 1 - - --- 2025-07-07 Florian Westphal Accepted
[nf-next,2/2] netfilter: nf_tables: all transaction allocations can now sleep netfilter: nf_tables: make set flush more resistant to memory pressure - - - - --- 2025-07-04 Florian Westphal Changes Requested
[nf-next,1/2] netfilter: nf_tables: allow iter callbacks to sleep netfilter: nf_tables: make set flush more resistant to memory pressure - - - - --- 2025-07-04 Florian Westphal Changes Requested
[nf] selftests: netfilter: nft_concat_range.sh: send packets to empty set [nf] selftests: netfilter: nft_concat_range.sh: send packets to empty set - - - - --- 2025-07-01 Florian Westphal Accepted
[nf,4/4] netfilter: nf_conntrack: fix crash due to removal of uninitialised entry netfilter: conntrack: fix obscure confirmed race - 1 - - --- 2025-06-27 Florian Westphal Changes Requested
[nf,3/4] selftests: netfilter: conntrack_resize.sh: also use udpclash tool netfilter: conntrack: fix obscure confirmed race - - - - --- 2025-06-27 Florian Westphal Accepted
[nf,2/4] selftests: netfilter: add conntrack clash resolution test case netfilter: conntrack: fix obscure confirmed race - - - - --- 2025-06-27 Florian Westphal Accepted
[nf,1/4] selftests: netfilter: conntrack_resize.sh: extend resize test netfilter: conntrack: fix obscure confirmed race - - - - --- 2025-06-27 Florian Westphal Accepted
[nf-next,v2,2/2] netfilter: nf_tables: add packets conntrack state to debug trace info netfilter: nf_tables: include conntrack state in trace messages - - - - --- 2025-05-22 Florian Westphal Accepted
[nf-next,v2,1/2] netfilter: conntrack: make nf_conntrack_id callable without a module dependency netfilter: nf_tables: include conntrack state in trace messages - - - - --- 2025-05-22 Florian Westphal Accepted
[nf-next,v2,5/5] selftests: netfilter: nft_fib.sh: add type and oif tests with and without VRFs netfilter: resolve fib+vrf issues - - - - --- 2025-05-21 Florian Westphal Accepted
[nf-next,v2,4/5] netfilter: nf_tables: nft_fib: consistent l3mdev handling netfilter: resolve fib+vrf issues - 1 - - --- 2025-05-21 Florian Westphal Accepted
[nf-next,v2,3/5] netfilter: nf_tables: nft_fib_ipv6: fix VRF ipv4/ipv6 result discrepancy netfilter: resolve fib+vrf issues - 1 - - --- 2025-05-21 Florian Westphal Accepted
[nf-next,v2,2/5] selftests: netfilter: move fib vrf test to nft_fib.sh netfilter: resolve fib+vrf issues - - - - --- 2025-05-21 Florian Westphal Accepted
[nf-next,v2,1/5] selftests: netfilter: nft_fib.sh: add 'type' mode tests netfilter: resolve fib+vrf issues - - - - --- 2025-05-21 Florian Westphal Accepted
[nf-next] netfilter: xtables: support arpt_mark and ipv6 optstrip for iptables-nft only builds [nf-next] netfilter: xtables: support arpt_mark and ipv6 optstrip for iptables-nft only builds - 1 - - --- 2025-05-16 Florian Westphal Accepted
[nf-next,5/5] selftests: netfilter: nft_fib.sh: add type and oif tests with and without VRFs netfilter: resolve fib+vrf issues - - - - --- 2025-05-15 Florian Westphal Changes Requested
[nf-next,4/5] netfilter: nf_tables: nft_fib: consistent l3mdev handling netfilter: resolve fib+vrf issues - 1 - - --- 2025-05-15 Florian Westphal Changes Requested
[nf-next,3/5] netfilter: nf_tables: nft_fib_ipv6: fix VRF ipv4/ipv6 result discrepancy netfilter: resolve fib+vrf issues - 1 - - --- 2025-05-15 Florian Westphal Changes Requested
[nf-next,2/5] selftests: netfilter: move fib vrf test to nft_fib.sh netfilter: resolve fib+vrf issues - - - - --- 2025-05-15 Florian Westphal Changes Requested
[nf-next,1/5] selftests: netfilter: nft_fib.sh: add 'type' mode tests netfilter: resolve fib+vrf issues - - - - --- 2025-05-15 Florian Westphal Changes Requested
[nf-next] selftests: netfilter: nft_concat_range.sh: add coverage for 4bit group representation [nf-next] selftests: netfilter: nft_concat_range.sh: add coverage for 4bit group representation - - 1 - --- 2025-05-06 Florian Westphal Accepted
[nf-next] tools: selftests: prepare for non-default IP_TABLES_LEGACY [nf-next] tools: selftests: prepare for non-default IP_TABLES_LEGACY - - - - --- 2025-04-24 Florian Westphal Accepted
[nf-next] netfilter: nf_tables: fix debug splat when dumping pipapo avx2 set [nf-next] netfilter: nf_tables: fix debug splat when dumping pipapo avx2 set - 1 - - --- 2025-04-23 Florian Westphal Accepted
[nf-next] selftests: netfilter: nft_fib.sh: check lo packets bypass fib lookup [nf-next] selftests: netfilter: nft_fib.sh: check lo packets bypass fib lookup - - - - --- 2025-04-23 Florian Westphal Accepted
[v2,nf-next] netfilter: nf_conntrack: speed up reads from nf_conntrack proc file [v2,nf-next] netfilter: nf_conntrack: speed up reads from nf_conntrack proc file - - - - --- 2025-04-22 Florian Westphal Accepted
[nf-next] selftests: netfilter: add conntrack stress test [nf-next] selftests: netfilter: add conntrack stress test - - - - --- 2025-04-17 Florian Westphal Accepted
[nf] netfilter: conntrack: fix erronous removal of offload bit [nf] netfilter: conntrack: fix erronous removal of offload bit - 1 - - --- 2025-04-15 Florian Westphal Accepted
[v2,nf-next] netfilter: nf_tables: export set count and backend name to userspace [v2,nf-next] netfilter: nf_tables: export set count and backend name to userspace - - - - --- 2025-04-08 Florian Westphal Accepted
[v3,nf,2/3] selftests: netfilter: add test case for recent mismatch bug nft_set_pipapo: fix incorrect avx2 match of 5th field octet - - 1 - --- 2025-04-07 Florian Westphal Accepted
[v3,nf,1/3] nft_set_pipapo: fix incorrect avx2 match of 5th field octet nft_set_pipapo: fix incorrect avx2 match of 5th field octet - 1 1 - --- 2025-04-07 Florian Westphal Accepted
[nft] json: don't BUG when asked to list synproxies [nft] json: don't BUG when asked to list synproxies - - - - --- 2025-03-24 Florian Westphal Changes Requested
[nft] evaluate: tolerate empty concatenation [nft] evaluate: tolerate empty concatenation - - - - --- 2025-03-24 Florian Westphal Changes Requested
[nf] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted [nf] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted - - - - --- 2025-03-11 Florian Westphal Accepted
[nf-next] netfilter: fib: avoid lookup if socket is available [nf-next] netfilter: fib: avoid lookup if socket is available - - - - --- 2025-02-20 Florian Westphal Accepted
[nf] netfilter: nf_tables: do not defer rule destruction via call_rcu [nf] netfilter: nf_tables: do not defer rule destruction via call_rcu - 1 - - --- 2024-12-07 Florian Westphal Accepted
[nf-next] ipvs: speed up reads from ip_vs_conn proc file [nf-next] ipvs: speed up reads from ip_vs_conn proc file 1 - - - --- 2024-12-03 Florian Westphal Accepted
[nf-next,v5,5/5] netfilter: nf_tables: allocate element update information dynamically netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-13 Florian Westphal Accepted
[nf-next,v5,4/5] netfilter: nf_tables: switch trans_elem to real flex array netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-13 Florian Westphal Accepted
[nf-next,v5,3/5] netfilter: nf_tables: prepare nft audit for set element compaction netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-13 Florian Westphal Accepted
[nf-next,v5,2/5] netfilter: nf_tables: prepare for multiple elements in nft_trans_elem structure netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-13 Florian Westphal Accepted
[nf-next,v5,1/5] netfilter: nf_tables: add nft_trans_commit_list_add_elem helper netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-13 Florian Westphal Accepted
[nf-next,v4,5/5] netfilter: nf_tables: allocate element update information dynamically netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-07 Florian Westphal Changes Requested
[nf-next,v4,4/5] netfilter: nf_tables: switch trans_elem to real flex array netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-07 Florian Westphal Changes Requested
[nf-next,v4,3/5] netfilter: nf_tables: preemptive fix for audit selftest failure netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-07 Florian Westphal Changes Requested
[nf-next,v4,2/5] netfilter: nf_tables: prepare for multiple elements in nft_trans_elem structure netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-07 Florian Westphal Changes Requested
[nf-next,v4,1/5] netfilter: nf_tables: add nft_trans_commit_list_add_elem helper netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-11-07 Florian Westphal Changes Requested
[net-next] selftests: netfilter: nft_queue.sh: fix warnings with socat 1.8.0.0 [net-next] selftests: netfilter: nft_queue.sh: fix warnings with socat 1.8.0.0 - - - - --- 2024-11-04 Florian Westphal Awaiting Upstream
[net-next] selftests: netfilter: run conntrack_dump_flush in netns [net-next] selftests: netfilter: run conntrack_dump_flush in netns - - - - --- 2024-11-04 Florian Westphal Awaiting Upstream
[nf-next,v3,7/7] netfilter: nf_tables: must hold rcu read lock while iterating object type list netfilter: nf_tables: avoid PROVE_RCU_LIST splats - 1 - - --- 2024-11-04 Florian Westphal Accepted
[nf-next,v3,6/7] netfilter: nf_tables: must hold rcu read lock while iterating expression type list netfilter: nf_tables: avoid PROVE_RCU_LIST splats - 1 - - --- 2024-11-04 Florian Westphal Accepted
[nf-next,v3,5/7] netfilter: nf_tables: avoid false-positive lockdep splats with basechain hook netfilter: nf_tables: avoid PROVE_RCU_LIST splats - - - - --- 2024-11-04 Florian Westphal Accepted
[nf-next,v3,4/7] netfilter: nf_tables: avoid false-positive lockdep splats in set walker netfilter: nf_tables: avoid PROVE_RCU_LIST splats - - - - --- 2024-11-04 Florian Westphal Accepted
[nf-next,v3,3/7] netfilter: nf_tables: avoid false-positive lockdep splats with flowtables netfilter: nf_tables: avoid PROVE_RCU_LIST splats - - - - --- 2024-11-04 Florian Westphal Accepted
[nf-next,v3,2/7] netfilter: nf_tables: avoid false-positive lockdep splats with sets netfilter: nf_tables: avoid PROVE_RCU_LIST splats - - - - --- 2024-11-04 Florian Westphal Accepted
[nf-next,v3,1/7] netfilter: nf_tables: avoid false-positive lockdep splat on rule deletion netfilter: nf_tables: avoid PROVE_RCU_LIST splats - 1 - 1 --- 2024-11-04 Florian Westphal Accepted
[nft,v2] doc: extend description of fib expression [nft,v2] doc: extend description of fib expression - - 1 - --- 2024-10-30 Florian Westphal Accepted
[nf-next,v2] netfilter: conntrack: collect start time as early as possible [nf-next,v2] netfilter: conntrack: collect start time as early as possible - 1 - - --- 2024-10-30 Florian Westphal Changes Requested
[v2,nf-next,7/7] netfilter: nf_tables: must hold rcu read lock while iterating object type list netfilter: nf_tables: avoid PROVE_RCU_LIST splats - 1 - - --- 2024-10-30 Florian Westphal Changes Requested
[v2,nf-next,6/7] netfilter: nf_tables: must hold rcu read lock while iterating expression type list netfilter: nf_tables: avoid PROVE_RCU_LIST splats - 1 - - --- 2024-10-30 Florian Westphal Changes Requested
[v2,nf-next,5/7] netfilter: nf_tables: avoid false-positive lockdep splats with basechain hook netfilter: nf_tables: avoid PROVE_RCU_LIST splats - - - - --- 2024-10-30 Florian Westphal Changes Requested
[v2,nf-next,4/7] netfilter: nf_tables: avoid false-positive lockdep splats in set walker netfilter: nf_tables: avoid PROVE_RCU_LIST splats - - - - --- 2024-10-30 Florian Westphal Changes Requested
[v2,nf-next,3/7] netfilter: nf_tables: avoid false-positive lockdep splats with flowtables netfilter: nf_tables: avoid PROVE_RCU_LIST splats - - - - --- 2024-10-30 Florian Westphal Changes Requested
« 1 2 3 426 27 »