netfilter-devel
Thread
Date
Earlier messages
Later messages
Messages by Thread
[PATCH nftables 2/3] cli: add linenoise CLI implementation.
Jeremy Sowden
[PATCH nftables 1/3] src, include: add upstream linenoise source.
Jeremy Sowden
[PATCH nftables 3/3] main: add more information to `nft -v`.
Jeremy Sowden
Re: [PATCH nftables 0/3] Add Linenoise support to the CLI.
Jeremy Sowden
[PATCH 0/1] netfilter: bridge: build fix for 5.3
Jeremy Sowden
[PATCH 1/1] netfilter: add missing IS_ENABLED(CONFIG_NF_TABLES) check to header-file.
Jeremy Sowden
Re: [PATCH 0/1] netfilter: bridge: build fix for 5.3
Greg KH
[PATCH libmnl, v3] Enable doxygen to generate Function Documentation
Duncan Roe
[PATCH libmnl, v2] Enable doxygen to generate Function Documentation
Duncan Roe
[iptables PATCH] xtables-restore: Fix --table parameter check
Phil Sutter
Re: [iptables PATCH] xtables-restore: Fix --table parameter check
Phil Sutter
Re: [iptables PATCH] xtables-restore: Fix --table parameter check
Florian Westphal
Re: [iptables PATCH] xtables-restore: Fix --table parameter check
Phil Sutter
Re: [iptables PATCH] xtables-restore: Fix --table parameter check
Florian Westphal
Re: [iptables PATCH] xtables-restore: Fix --table parameter check
Phil Sutter
Re: [iptables PATCH] xtables-restore: Fix --table parameter check
Florian Westphal
[PATCH nft] mnl: do not cache sender buffer size
Pablo Neira Ayuso
Re: [PATCH nft] mnl: do not cache sender buffer size
Florian Westphal
[PATCH conntrack-tools,v2 1/2] conntrackd: Fix "Address Accept" filter case
Pablo Neira Ayuso
[PATCH conntrack-tools,v2 2/2] conntrackd: incorrect filtering of Address with cidr /0
Pablo Neira Ayuso
[PATCH conntrack-tools 1/2] conntrackd: Fix "Address Accept" filter case
Pablo Neira Ayuso
[PATCH conntrack-tools 2/2] conntrackd: incorrect filtering of Address with cidr /0
Pablo Neira Ayuso
[iptables PATCH] nft: Fix add_bitwise_u16() on Big Endian
Phil Sutter
Re: [iptables PATCH] nft: Fix add_bitwise_u16() on Big Endian
Pablo Neira Ayuso
[BUG] nft: "XT target TCPMSS not found" when TCPMSS clamp to PMTU rule is added for *both* ip and ip6
Timo Sigurdsson
netfilter.org HTTPS certificate expired today (Sept 19)
Dan Williams
[PATCH nf] netfilter: nf_tables: allow lookups in dynamic sets
Florian Westphal
Re: [PATCH nf] netfilter: nf_tables: allow lookups in dynamic sets
Pablo Neira Ayuso
Contributing to the Netfilter Project.
Wambui Karuga
Re: Contributing to the Netfilter Project.
Florian Westphal
[PATCH nft] src: meter: avoid double-space in list ruleset output
Florian Westphal
Re: [PATCH nft] src: meter: avoid double-space in list ruleset output
Pablo Neira Ayuso
What is 'dynamic' set flag supposed to mean?
Florian Westphal
Re: What is 'dynamic' set flag supposed to mean?
Laura Garcia
Re: What is 'dynamic' set flag supposed to mean?
Florian Westphal
Re: What is 'dynamic' set flag supposed to mean?
Pablo Neira Ayuso
Re: What is 'dynamic' set flag supposed to mean?
Florian Westphal
Re: What is 'dynamic' set flag supposed to mean?
Pablo Neira Ayuso
Re: What is 'dynamic' set flag supposed to mean?
Florian Westphal
Re: What is 'dynamic' set flag supposed to mean?
Pablo Neira Ayuso
Re: What is 'dynamic' set flag supposed to mean?
Florian Westphal
Re: What is 'dynamic' set flag supposed to mean?
Pablo Neira Ayuso
Re: What is 'dynamic' set flag supposed to mean?
Florian Westphal
Re: What is 'dynamic' set flag supposed to mean?
Pablo Neira Ayuso
Re: What is 'dynamic' set flag supposed to mean?
Florian Westphal
Re: What is 'dynamic' set flag supposed to mean?
Pablo Neira Ayuso
icmp_hdr is wrong on CentOS 6 kernels (2.6.32-754.12.1)
Olivia Nelson
[PATCH] extensions: fix iptables-{nft,translate} with conntrack EXPECTED
Quentin Armitage
Re: [PATCH] extensions: fix iptables-{nft,translate} with conntrack EXPECTED
Pablo Neira Ayuso
[iptables PATCH 00/14] Improve iptables-nft performance with large rulesets
Phil Sutter
[iptables PATCH 12/14] nft: Support fetching rules for a single chain only
Phil Sutter
[iptables PATCH 04/14] nft: Use nftnl_*_set_str() functions
Phil Sutter
Re: [iptables PATCH 04/14] nft: Use nftnl_*_set_str() functions
Pablo Neira Ayuso
[iptables PATCH 06/14] nft: Fix for add and delete of same rule in single batch
Phil Sutter
[iptables PATCH 03/14] DEBUG: Print to stderr to not disturb iptables-save
Phil Sutter
Re: [iptables PATCH 03/14] DEBUG: Print to stderr to not disturb iptables-save
Pablo Neira Ayuso
[iptables PATCH 10/14] nft: Fetch rule cache only if needed
Phil Sutter
[iptables PATCH 02/14] tests/shell: Speed up ipt-restore/0004-restore-race_0
Phil Sutter
Re: [iptables PATCH 02/14] tests/shell: Speed up ipt-restore/0004-restore-race_0
Florian Westphal
[iptables PATCH 05/14] nft: Introduce nft_bridge_commit()
Phil Sutter
Re: [iptables PATCH 05/14] nft: Introduce nft_bridge_commit()
Pablo Neira Ayuso
[iptables PATCH 13/14] nft: Optimize flushing all chains of a table
Phil Sutter
[iptables PATCH 01/14] tests/shell: Make ebtables-basic test more verbose
Phil Sutter
Re: [iptables PATCH 01/14] tests/shell: Make ebtables-basic test more verbose
Pablo Neira Ayuso
[iptables PATCH 11/14] nft: Allow to fetch only a specific chain from kernel
Phil Sutter
[iptables PATCH 09/14] nft: Rename have_cache into have_chain_cache
Phil Sutter
[iptables PATCH 08/14] xtables-restore: Avoid cache population when flushing
Phil Sutter
Re: [iptables PATCH 08/14] xtables-restore: Avoid cache population when flushing
Pablo Neira Ayuso
Re: [iptables PATCH 08/14] xtables-restore: Avoid cache population when flushing
Phil Sutter
[iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
Phil Sutter
Re: [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
Pablo Neira Ayuso
Re: [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
Phil Sutter
Re: [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
Pablo Neira Ayuso
Re: [iptables PATCH 07/14] nft Increase mnl_talk() receive buffer size
Phil Sutter
[iptables PATCH 14/14] nft: Reduce impact of nft_chain_builtin_init()
Phil Sutter
[PATCH nf 1/2] netfilter: nf_tables: add NFT_CHAIN_POLICY_UNSET and use it
Pablo Neira Ayuso
[PATCH nf 2/2] netfilter: nf_tables_offload: fix always true policy is unset check
Pablo Neira Ayuso
Re: [PATCH nft] src: parser_json: fix crash while restoring secmark object
Florian Westphal
[PATCH] nftables: don't crash in 'list ruleset' if policy is not set
Sergei Trofimovich
Re: [PATCH] nftables: don't crash in 'list ruleset' if policy is not set
Fernando Fernandez Mancera
Re: [PATCH] nftables: don't crash in 'list ruleset' if policy is not set
Florian Westphal
[nf-next:master 7/27] net/netfilter/nf_tables_offload.c:316 nft_flow_offload_chain() warn: always true condition '(policy != -1) => (0-255 != (-1))'
kbuild test robot
[PATCH nft] json: tests: fix typo in ct expectation json test
Fernando Fernandez Mancera
Re: [PATCH nft] json: tests: fix typo in ct expectation json test
Florian Westphal
[iptables PATCH] iptables-test: Support testing host binaries
Phil Sutter
Re: [iptables PATCH] iptables-test: Support testing host binaries
Florian Westphal
[nft PATCH v2] parser_bison: Fix 'exists' keyword on Big Endian
Phil Sutter
Re: [nft PATCH v2] parser_bison: Fix 'exists' keyword on Big Endian
Florian Westphal
Re: [nft PATCH v2] parser_bison: Fix 'exists' keyword on Big Endian
Phil Sutter
Re: [nft PATCH v2] parser_bison: Fix 'exists' keyword on Big Endian
Florian Westphal
[nft PATCH] parser_bison: Fix 'exists' keyword on Big Endian
Phil Sutter
Re: [nft PATCH] parser_bison: Fix 'exists' keyword on Big Endian
Florian Westphal
Re: [nft PATCH] parser_bison: Fix 'exists' keyword on Big Endian
Phil Sutter
[PATCH nft] json: fix type mismatch on "ct expect" json exporting
Fernando Fernandez Mancera
Re: [PATCH nft] json: fix type mismatch on "ct expect" json exporting
Pablo Neira Ayuso
Re: [PATCH nft] json: fix type mismatch on "ct expect" json exporting
Stéphane Veyret
[PATCH nf-next v3 00/18] Remove config option checks from netfilter headers.
Jeremy Sowden
[PATCH nf-next v3 07/18] netfilter: move inline function to a more appropriate header.
Jeremy Sowden
[PATCH nf-next v3 06/18] netfilter: remove nf_conntrack_icmpv6.h header.
Jeremy Sowden
[PATCH nf-next v3 03/18] netfilter: remove unused function declarations.
Jeremy Sowden
[PATCH nf-next v3 01/18] netfilter: fix include guards.
Jeremy Sowden
[PATCH nf-next v3 08/18] netfilter: move code between synproxy headers.
Jeremy Sowden
[PATCH nf-next v3 09/18] netfilter: move struct definition function to a more appropriate header.
Jeremy Sowden
[PATCH nf-next v3 02/18] netfilter: fix coding-style errors.
Jeremy Sowden
[PATCH nf-next v3 05/18] netfilter: update include directives.
Jeremy Sowden
[PATCH nf-next v3 04/18] netfilter: inline three headers.
Jeremy Sowden
[PATCH nf-next v3 10/18] netfilter: use consistent style when defining inline functions in nf_conntrack_ecache.h.
Jeremy Sowden
[PATCH nf-next v3 14/18] netfilter: move nf_conntrack code to linux/nf_conntrack_common.h.
Jeremy Sowden
Re: [PATCH nf-next v3 14/18] netfilter: move nf_conntrack code to linux/nf_conntrack_common.h.
Pablo Neira Ayuso
Re: [PATCH nf-next v3 14/18] netfilter: move nf_conntrack code to linux/nf_conntrack_common.h.
Pablo Neira Ayuso
[PATCH nf-next v3 11/18] netfilter: replace defined(CONFIG...) || defined(CONFIG...MODULE) with IS_ENABLED(CONFIG...).
Jeremy Sowden
[PATCH nf-next v3 12/18] netfilter: wrap two inline functions in config checks.
Jeremy Sowden
[PATCH nf-next v3 17/18] netfilter: remove CONFIG_NF_CONNTRACK checks from nf_conntrack_zones.h.
Jeremy Sowden
[PATCH nf-next v3 18/18] netfilter: remove two unused functions from nf_conntrack_timestamp.h.
Jeremy Sowden
[PATCH nf-next v3 16/18] netfilter: remove CONFIG_NETFILTER checks from headers.
Jeremy Sowden
[PATCH nf-next v3 13/18] netfilter: update stub br_nf_pre_routing_ipv6 parameter to `void *priv`.
Jeremy Sowden
[PATCH nf-next v3 15/18] netfilter: remove CONFIG_NF_CONNTRACK check from nf_conntrack_acct.h.
Jeremy Sowden
Re: [PATCH nf-next v3 00/18] Remove config option checks from netfilter headers.
Pablo Neira Ayuso
Re: [PATCH nf-next v3 00/18] Remove config option checks from netfilter headers.
Pablo Neira Ayuso
[PATCH nft v5] src: add synproxy stateful object support
Fernando Fernandez Mancera
Re: [PATCH nft v5] src: add synproxy stateful object support
Pablo Neira Ayuso
[PATCH nft v4] src: add synproxy stateful object support
Fernando Fernandez Mancera
Re: [PATCH nft v4] src: add synproxy stateful object support
Fernando Fernandez Mancera
[PATCH nft] libnftables: use-after-free in exit path
Pablo Neira Ayuso
[PATCH nf-next v6 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
wenxu
[PATCH nf-next v6 2/4] netfilter: nf_offload: refactor the nft_flow_offload_chain function
wenxu
[PATCH nf-next v6 1/4] netfilter: nf_tables_offload: add __nft_offload_get_chain function
wenxu
[PATCH nf-next v6 3/4] netfilter: nf_offload: refactor the nft_flow_offload_rule function
wenxu
[PATCH nf-next v6 4/4] netfilter: nf_offload: clean offload things when the device unregister
wenxu
Re: [PATCH nf-next v6 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
Pablo Neira Ayuso
[PATCH ebtables-nft] ebtables: fix over-eager -o checks on custom chains
Florian Westphal
Re: [PATCH ebtables-nft] ebtables: fix over-eager -o checks on custom chains
Pablo Neira Ayuso
[PATCH iptables] netfilter: hashlimit: prefer PRIu64 to avoid warnings on 32bit platforms
Florian Westphal
Re: [PATCH iptables] netfilter: hashlimit: prefer PRIu64 to avoid warnings on 32bit platforms
Pablo Neira Ayuso
iptables release
Fabio Pedretti
Re: iptables release
Fabio Pedretti
[PATCH nft] parser_json: fix crash on insert rule to bad references
Eric Garver
Re: [PATCH nft] parser_json: fix crash on insert rule to bad references
Phil Sutter
[PATCH nft 1/3] tests: shell: verify huge transaction returns expected number of rules
Eric Garver
[PATCH nft 2/3] tests: shell: add huge JSON transaction
Eric Garver
[PATCH nft 3/3] tests: shell: add huge transaction from firewalld
Eric Garver
Re: [PATCH nft 1/3] tests: shell: verify huge transaction returns expected number of rules
Phil Sutter
[conntrack-tools PATCH] nfct: helper: Fix NFCTH_ATTR_PROTO_L4NUM size
Phil Sutter
Re: [conntrack-tools PATCH] nfct: helper: Fix NFCTH_ATTR_PROTO_L4NUM size
Pablo Neira Ayuso
[PATCH nft] src: mnl: fix --echo buffer size -- again
Florian Westphal
Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
Pablo Neira Ayuso
Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
Florian Westphal
Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
Pablo Neira Ayuso
Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
Florian Westphal
Re: [PATCH nft] src: mnl: fix --echo buffer size -- again
Eric Garver
[PATCH nft] netlink_delinearize: fix wrong conversion to "list" in ct mark
Fernando Fernandez Mancera
Re: [PATCH nft] netlink_delinearize: fix wrong conversion to "list" in ct mark
Pablo Neira Ayuso
[PATCH nf-next v5 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
wenxu
[PATCH nf-next v5 1/4] netfilter: nf_tables_offload: add __nft_offload_get_chain function
wenxu
[PATCH nf-next v5 2/4] netfilter: nf_offload: refactor the nft_flow_offload_chain function
wenxu
Re: [PATCH nf-next v5 2/4] netfilter: nf_offload: refactor the nft_flow_offload_chain function
Pablo Neira Ayuso
[PATCH nf-next v5 3/4] netfilter: nf_offload: refactor the nft_flow_offload_rule function
wenxu
Re: [PATCH nf-next v5 3/4] netfilter: nf_offload: refactor the nft_flow_offload_rule function
Pablo Neira Ayuso
[PATCH nf-next v5 4/4] netfilter: nf_offload: clean offload things when the device unregister
wenxu
Re: [PATCH nf-next v5 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
Pablo Neira Ayuso
Re: [PATCH nf-next v5 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
Pablo Neira Ayuso
Re: [PATCH nf-next v5 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
wenxu
[PATCH nft v3] src: add synproxy stateful object support
Fernando Fernandez Mancera
Re: [PATCH nft v3] src: add synproxy stateful object support
Pablo Neira Ayuso
Re: [PATCH nft v3] src: add synproxy stateful object support
Fernando Fernandez Mancera
[PATCH nf-next] netfilter: nft_{fwd,dup}_netdev: add offload support
Pablo Neira Ayuso
Re: [PATCH nf-next] netfilter: nft_{fwd,dup}_netdev: add offload support
wenxu
[PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
wenxu
[PATCH nf-next v6 3/8] netfilter: nft_tunnel: add ipv6 check in nft_tunnel_mode_validate
wenxu
[PATCH nf-next v6 1/8] netfilter: nft_tunnel: add nft_tunnel_mode_validate function
wenxu
[PATCH nf-next v6 2/8] netfilter: nft_tunnel: support NFT_TUNNEL_IP_SRC/DST match
wenxu
[PATCH nf-next v6 8/8] netfilter: nft_tunnel: support nft_tunnel_obj offload
wenxu
[PATCH nf-next v6 4/8] netfilter: nft_tunnel: support NFT_TUNNEL_IP6_SRC/DST match
wenxu
[PATCH nf-next v6 6/8] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
wenxu
[PATCH nf-next v6 7/8] netfilter: nft_objref: add nft_objref_type offload
wenxu
[PATCH nf-next v6 5/8] netfilter: nft_tunnel: support tunnel meta match offload
wenxu
Re: [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
Pablo Neira Ayuso
[PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
wenxu
[PATCH nf-next v6 1/8] netfilter: nft_tunnel: add nft_tunnel_mode_validate function
wenxu
[PATCH nf-next v6 7/8] netfilter: nft_objref: add nft_objref_type offload
wenxu
[PATCH nf-next v6 8/8] netfilter: nft_tunnel: support nft_tunnel_obj offload
wenxu
[PATCH nf-next v6 4/8] netfilter: nft_tunnel: support NFT_TUNNEL_IP6_SRC/DST match
wenxu
[PATCH nf-next v6 2/8] netfilter: nft_tunnel: support NFT_TUNNEL_IP_SRC/DST match
wenxu
[PATCH nf-next v6 6/8] netfilter: nft_tunnel: add NFTA_TUNNEL_KEY_RELEASE action
wenxu
[PATCH nf-next v6 3/8] netfilter: nft_tunnel: add ipv6 check in nft_tunnel_mode_validate
wenxu
[PATCH nf-next v6 5/8] netfilter: nft_tunnel: support tunnel meta match offload
wenxu
Re: [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
wenxu
Re: [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
Pablo Neira Ayuso
Re: [PATCH nf-next v6 0/8] netfilter: nf_tables_offload: support tunnel offload
wenxu
[PATCH nf-next v4 0/4] netfilter: nf_tables_offload: clean offload things when the device unregister
wenxu
[PATCH nf-next v4 3/4] netfilter: nf_tables_offload: add __nft_offload_get_chain function
wenxu
[PATCH nf-next v4 2/4] netfilter: nf_offload: refactor the nft_flow_offload_rule function
wenxu
[PATCH nf-next v4 1/4] netfilter: nf_offload: refactor the nft_flow_offload_chain function
wenxu
[PATCH nf-next v4 4/4] netfilter: nf_offload: clean offload things when the device unregister
wenxu
Re: [PATCH nf-next v4 4/4] netfilter: nf_offload: clean offload things when the device unregister
Pablo Neira Ayuso
Re: [PATCH nf-next v4 4/4] netfilter: nf_offload: clean offload things when the device unregister
wenxu
Re: [PATCH nf-next v4 4/4] netfilter: nf_offload: clean offload things when the device unregister
Pablo Neira Ayuso
[PATCH] src: Enable doxygen to generate Function Documentation
Duncan Roe
Re: [PATCH] src: Enable doxygen to generate Function Documentation
Duncan Roe
Re: [PATCH] src: Enable doxygen to generate Function Documentation
Duncan Roe
Earlier messages
Later messages