netfilter-devel
Thread
Date
Earlier messages
Later messages
Messages by Thread
Re: [PATCH nft] doc: fib: explain example in more detail
Florian Westphal
Re: [PATCH nft] doc: fib: explain example in more detail
Pablo Neira Ayuso
[PATCH nft] scanner: don't rely on fseek for input stream repositioning
Florian Westphal
Re: [PATCH nft] scanner: don't rely on fseek for input stream repositioning
Pablo Neira Ayuso
[PATCH nft 0/3] fix crash bug during rule restore
Florian Westphal
[PATCH nft 3/3] src: evaluate: return immediately if no op was requested
Florian Westphal
Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
Pablo Neira Ayuso
Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
Florian Westphal
Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
Pablo Neira Ayuso
Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
Phil Sutter
Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
Pablo Neira Ayuso
Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
Pablo Neira Ayuso
Re: [PATCH nft 3/3] src: evaluate: return immediately if no op was requested
Florian Westphal
[PATCH nft 2/3] src: evaluate: don't rely on global chain ctx for error reporting
Florian Westphal
[PATCH nft 1/3] src: erec: fall back to internal location if its null
Florian Westphal
Re: [PATCH nft 1/3] src: erec: fall back to internal location if its null
Pablo Neira Ayuso
Re: [PATCH nft 1/3] src: erec: fall back to internal location if its null
Florian Westphal
Re: [PATCH nft 1/3] src: erec: fall back to internal location if its null
Pablo Neira Ayuso
[nft PATCH 1/2] parser_bison: Get rid of (most) bison compiler warnings
Phil Sutter
[nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
Phil Sutter
Re: [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
Florian Westphal
Re: [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
Phil Sutter
Re: [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
Fernando Fernandez Mancera
Re: [nft PATCH 2/2] nfnl_osf: Silence string truncation gcc warnings
Phil Sutter
Re: [nft PATCH 1/2] parser_bison: Get rid of (most) bison compiler warnings
Florian Westphal
Re: [nft PATCH 1/2] parser_bison: Get rid of (most) bison compiler warnings
Phil Sutter
[iptables PATCH 00/12] Larger xtables-save review
Phil Sutter
[iptables PATCH 09/12] xtables-save: Make COMMIT line optional
Phil Sutter
Re: [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
Florian Westphal
Re: [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
Phil Sutter
Re: [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
Florian Westphal
Re: [iptables PATCH 09/12] xtables-save: Make COMMIT line optional
Phil Sutter
[iptables PATCH 05/12] xtables-save: Fix table compatibility check
Phil Sutter
[iptables PATCH 06/12] nft: Make nft_for_each_table() more versatile
Phil Sutter
[iptables PATCH 11/12] arptables-save: Merge into xtables_save_main()
Phil Sutter
[iptables PATCH 03/12] xtables-save: Use argv[0] as program name
Phil Sutter
Re: [iptables PATCH 03/12] xtables-save: Use argv[0] as program name
Phil Sutter
Re: [iptables PATCH 03/12] xtables-save: Use argv[0] as program name
Pablo Neira Ayuso
[iptables PATCH 07/12] xtables-save: Avoid mixed code and declarations
Phil Sutter
[iptables PATCH 10/12] xtables-save: Pass format flags to do_output()
Phil Sutter
[iptables PATCH 12/12] ebtables-save: Merge into xtables_save_main()
Phil Sutter
[iptables PATCH 01/12] ebtables: Fix error message for invalid parameters
Phil Sutter
[iptables PATCH 02/12] ebtables-save: Fix counter formatting
Phil Sutter
[iptables PATCH 08/12] xtables-save: Pass optstring/longopts to xtables_save_main()
Phil Sutter
[iptables PATCH 04/12] xtables-save: Unify *-save header/footer comments
Phil Sutter
Re: [iptables PATCH 00/12] Larger xtables-save review
Florian Westphal
Re: [iptables PATCH 00/12] Larger xtables-save review
Pablo Neira Ayuso
[PATCH nft] src: allow variables in the chain priority specification
Fernando Fernandez Mancera
[nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
Phil Sutter
[PATCH 2/2] net: netfilter: nft_meta_bridge: Eliminate 'out' label
Phil Sutter
Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
Pablo Neira Ayuso
Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
Phil Sutter
Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
Pablo Neira Ayuso
Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
Phil Sutter
Re: [nf PATCH v2 1/2] net: nf_tables: Make nft_meta expression more robust
Pablo Neira Ayuso
Frissítse fiókját
info
[PATCH conntrack-tools] conntrackd: cthelper: Add new SLP helper
Michal Kubecek
Re: [PATCH conntrack-tools] conntrackd: cthelper: Add new SLP helper
Pablo Neira Ayuso
[PATCH nf 1/2] netfilter: nft_meta: skip EAGAIN if nft_meta_bridge is not a module
Pablo Neira Ayuso
[PATCH nf 2/2] netfilter: bridge: NF_CONNTRACK_BRIDGE does not depend on NF_TABLES_BRIDGE
Pablo Neira Ayuso
[nft PATCH] json: Fix memleak in timeout_policy_json()
Phil Sutter
Re: [nft PATCH] json: Fix memleak in timeout_policy_json()
Pablo Neira Ayuso
[iptables PATCH] xtables-save: Use argv[0] as program name
Phil Sutter
Re: [iptables PATCH] xtables-save: Use argv[0] as program name
Pablo Neira Ayuso
Re: [iptables PATCH] xtables-save: Use argv[0] as program name
Phil Sutter
Re: [iptables PATCH] xtables-save: Use argv[0] as program name
Pablo Neira Ayuso
[PATCH nft] src: osf: fix snprintf -Wformat-truncation warning
Fernando Fernandez Mancera
Re: [PATCH nft] src: osf: fix snprintf -Wformat-truncation warning
Phil Sutter
Re: [PATCH nft] src: osf: fix snprintf -Wformat-truncation warning
Fernando Fernandez Mancera
Re: [PATCH nft] src: osf: fix snprintf -Wformat-truncation warning
Phil Sutter
[PATCH nft] include: json: add missing synproxy stmt print stub
Fernando Fernandez Mancera
Re: [PATCH nft] include: json: add missing synproxy stmt print stub
Pablo Neira Ayuso
Re: [PATCH nft] include: json: add missing synproxy stmt print stub
Fernando Fernandez Mancera
userspace conntrack helper and confirming the master conntrack
Michal Kubecek
Re: userspace conntrack helper and confirming the master conntrack
Florian Westphal
Re: userspace conntrack helper and confirming the master conntrack
Michal Kubecek
Re: userspace conntrack helper and confirming the master conntrack
Pablo Neira Ayuso
Re: userspace conntrack helper and confirming the master conntrack
Michal Kubecek
Re: userspace conntrack helper and confirming the master conntrack
Pablo Neira Ayuso
Re: userspace conntrack helper and confirming the master conntrack
Michal Kubecek
[PATCH v2] netfilter: nft_dynset: support for element deletion
Ander Juaristi
Re: [PATCH v2] netfilter: nft_dynset: support for element deletion
Florian Westphal
[nft PATCH 1/3] meta: Reject zero ifindex values
Phil Sutter
[nft PATCH 3/3] tests/py: Add missing meta tests
Phil Sutter
[nft PATCH 2/3] meta: Reject nfproto value 0xffff
Phil Sutter
[libnftnl PATCH] expr: meta: Make NFT_META_{I,O}IFKIND known
Phil Sutter
Re: [libnftnl PATCH] expr: meta: Make NFT_META_{I,O}IFKIND known
Pablo Neira Ayuso
[nf PATCH] net: nf_tables: Make nft_meta expression more robust
Phil Sutter
Re: [nf PATCH] net: nf_tables: Make nft_meta expression more robust
Pablo Neira Ayuso
Re: [nf PATCH] net: nf_tables: Make nft_meta expression more robust
Pablo Neira Ayuso
[nf PATCH] net: nf_tables: Support auto-loading for inet nat
Phil Sutter
Re: [nf PATCH] net: nf_tables: Support auto-loading for inet nat
Pablo Neira Ayuso
[nf PATCH RFC] net: nf_tables: Support auto-loading inet family nat chain
Phil Sutter
Re: [nf PATCH RFC] net: nf_tables: Support auto-loading inet family nat chain
Pablo Neira Ayuso
Re: [nf PATCH RFC] net: nf_tables: Support auto-loading inet family nat chain
Phil Sutter
If interested
Tk Allen
[PATCH 1/2 nft] src: json: fix synproxy flag parser typo
Fernando Fernandez Mancera
[PATCH 2/2 nft] tests: py: add missing json outputs
Fernando Fernandez Mancera
Re: [PATCH 2/2 nft] tests: py: add missing json outputs
Pablo Neira Ayuso
Re: [PATCH 1/2 nft] src: json: fix synproxy flag parser typo
Pablo Neira Ayuso
Re: [PATCH ghak90 V6 02/10] audit: add container id
Richard Guy Briggs
[PATCH nft] evaluate: missing basic evaluation of expectations
Pablo Neira Ayuso
rebasing nf.git
Pablo Neira Ayuso
json_cmd_assoc and cmd
Pablo Neira Ayuso
Re: json_cmd_assoc and cmd
Phil Sutter
Re: json_cmd_assoc and cmd
Pablo Neira Ayuso
Re: json_cmd_assoc and cmd
Jeremy Sowden
Re: json_cmd_assoc and cmd
Phil Sutter
Re: json_cmd_assoc and cmd
Pablo Neira Ayuso
Re: json_cmd_assoc and cmd
Jeremy Sowden
[PATCH nft] libnftables: got rid of repeated initialization of netlink_ctx variable in loop.
Jeremy Sowden
Re: [PATCH nft] libnftables: got rid of repeated initialization of netlink_ctx variable in loop.
Phil Sutter
[PATCH nft v2 0/2] netlink_ctx initialization fixes.
Jeremy Sowden
[PATCH nft v2 2/2] rule: removed duplicate member initializer.
Jeremy Sowden
Re: [PATCH nft v2 2/2] rule: removed duplicate member initializer.
Phil Sutter
[PATCH nft v2 1/2] libnftables: got rid of repeated initialization of netlink_ctx variable in loop.
Jeremy Sowden
Re: [PATCH nft v2 1/2] libnftables: got rid of repeated initialization of netlink_ctx variable in loop.
Phil Sutter
Re: [PATCH nft v2 0/2] netlink_ctx initialization fixes.
Pablo Neira Ayuso
[PATCH nft,v2] evaluate: bogus error when refering to existing non-base chain
Pablo Neira Ayuso
[PATCH nft] evaluate: bogus error when refering to existing non-base chain
Pablo Neira Ayuso
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Phil Sutter
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Fernando Fernandez Mancera
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Florian Westphal
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Pablo Neira Ayuso
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Pablo Neira Ayuso
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Florian Westphal
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Fernando Fernandez Mancera
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Fernando Fernandez Mancera
Re: [PATCH nft] evaluate: bogus error when refering to existing non-base chain
Phil Sutter
[PATCH nft 1/5] src: add set_is_datamap(), set_is_objmap() and set_is_map() helpers
Pablo Neira Ayuso
[PATCH nft 5/5] cache: incorrect cache flags for create commands
Pablo Neira Ayuso
[PATCH nft 3/5] src: use set_is_anonymous()
Pablo Neira Ayuso
[PATCH nft 2/5] evaluate: missing object maps handling in list and flush commands
Pablo Neira Ayuso
[PATCH nft 4/5] evaluate: honor NFT_SET_OBJECT flag
Pablo Neira Ayuso
[PATCH 0/2 nft WIP] Using variables in chain priority
Fernando Fernandez Mancera
[PATCH 1/2 nft WIP] src: introduce prio_expr in chain priority
Fernando Fernandez Mancera
Re: [PATCH 1/2 nft WIP] src: introduce prio_expr in chain priority
Pablo Neira Ayuso
Re: [PATCH 1/2 nft WIP] src: introduce prio_expr in chain priority
Fernando Fernandez Mancera
[PATCH 2/2 nft WIP] src: allow variables in chain priority
Fernando Fernandez Mancera
Re: [PATCH 2/2 nft WIP] src: allow variables in chain priority
Pablo Neira Ayuso
[PATCH nf-next v5 0/8] netfilter: nf_flow_offload: support bridge family offload for both
wenxu
[PATCH nf-next v5 8/8] netfilter: Support the bridge family in flow table
wenxu
[PATCH nf-next v5 6/8] netfilter:nf_flow_table_ip: Support bridge family flow offload
wenxu
[PATCH nf-next v5 3/8] netfilter:nf_flow_table_ip: Separate inet operation to single function
wenxu
[PATCH nf-next v5 5/8] netfilter:nf_flow_table_core: Support bridge family flow offload
wenxu
[PATCH nf-next v5 7/8] netfilter:nft_flow_offload: Support bridge family flow offload
wenxu
[PATCH nf-next v5 1/8] netfilter:nf_flow_table: Refactor flow_offload_tuple to destination
wenxu
[PATCH nf-next v5 4/8] bridge: add br_vlan_get_info_rcu()
wenxu
[PATCH nf-next v5 2/8] netfilter:nf_flow_table_core: Separate inet operation to single function
wenxu
Re: [PATCH nf-next v5 0/8] netfilter: nf_flow_offload: support bridge family offload for both
Florian Westphal
Pre-patch of nftables for nft_tunnel
wenxu
[PATCH nf v3] netfilter: synproxy: fix rst sequence number mismatch
Fernando Fernandez Mancera
Re: [PATCH nf v3] netfilter: synproxy: fix rst sequence number mismatch
Pablo Neira Ayuso
[PATCHv2] Fix dumping vlan rules
michael-dev
Re: [PATCHv2] Fix dumping vlan rules
Pablo Neira Ayuso
Re: [PATCHv2] Fix dumping vlan rules
michael-dev
Re: [PATCHv2] Fix dumping vlan rules
Pablo Neira Ayuso
[PATCH libiptc] libip6tc.h: Add extern "C" wrapping for C++ linking.
Chris PeBenito
Re: [PATCH libiptc] libip6tc.h: Add extern "C" wrapping for C++ linking.
Pablo Neira Ayuso
[PATCH nf] netfilter: fix symhash with modulus one
Laura Garcia Liebana
Re: [PATCH nf] netfilter: fix symhash with modulus one
Pablo Neira Ayuso
[PATCH conntrack-tools] conntrackd: use correct max unix path length
Michal Kubecek
Re: [PATCH conntrack-tools] conntrackd: use correct max unix path length
Pablo Neira Ayuso
[PATCH xtables] nft: exit in case we can't fetch current genid
Florian Westphal
Re: [PATCH xtables] nft: exit in case we can't fetch current genid
Pablo Neira Ayuso
[PATCH nf] netfilter: nf_tables: don't fail when updating base chain policy
Florian Westphal
Re: [PATCH nf] netfilter: nf_tables: don't fail when updating base chain policy
Pablo Neira Ayuso
[PATCH nft] proto: add pseudo th protocol to match d/sport in generic way
Florian Westphal
Re: [PATCH nft] proto: add pseudo th protocol to match d/sport in generic way
Pablo Neira Ayuso
[PATCH] netfilter: support for element deletion
Ander Juaristi
Re: [PATCH] netfilter: support for element deletion
Florian Westphal
[PATCH] netfilter: nft_dynset: support for element deletion
Ander Juaristi
Re: [PATCH] netfilter: nft_dynset: support for element deletion
Florian Westphal
Re: [PATCH] netfilter: nft_dynset: support for element deletion
Ander Juaristi
Re: [PATCH] netfilter: nft_dynset: support for element deletion
Florian Westphal
Re: [PATCH] netfilter: nft_dynset: support for element deletion
kbuild test robot
[PATCH nf v2] netfilter: synproxy: fix rst sequence number mismatch
Fernando Fernandez Mancera
Re: [PATCH nf v2] netfilter: synproxy: fix rst sequence number mismatch
Florian Westphal
Re: [PATCH nf v2] netfilter: synproxy: fix rst sequence number mismatch
Fernando Fernandez Mancera
Re: [PATCH nf v2] netfilter: synproxy: fix rst sequence number mismatch
Fernando Fernandez Mancera
Re: [PATCH nf v2] netfilter: synproxy: fix rst sequence number mismatch
Florian Westphal
[PATCH nft] src/ct: provide fixed data lengh sizes for ip/ip6 keys
Florian Westphal
Re: [PATCH nft] src/ct: provide fixed data lengh sizes for ip/ip6 keys
Pablo Neira Ayuso
Re: [PATCH nft] src/ct: provide fixed data lengh sizes for ip/ip6 keys
Florian Westphal
[PATCH nf-next] netfilter: synproxy: fix rst sequence number mismatch
Fernando Fernandez Mancera
[PATCH nf] netfilter: conntrack: always store window size un-scaled
Florian Westphal
Re: [PATCH nf] netfilter: conntrack: always store window size un-scaled
Jozsef Kadlecsik
Re: [PATCH nf] netfilter: conntrack: always store window size un-scaled
Pablo Neira Ayuso
Re: [PATCH nf] netfilter: conntrack: always store window size un-scaled
Reindl Harald
Re: [PATCH nf] netfilter: conntrack: always store window size un-scaled
Thomas Jarosch
[PATCH 1/1] netfilter: nf_tables: fix module autoload for redir
Christian Hesse
Re: [PATCH 1/1] netfilter: nf_tables: fix module autoload for redir
Pablo Neira Ayuso
Re: 3-way handshake sets conntrack timeout to max_retrans
Jozsef Kadlecsik
Re: 3-way handshake sets conntrack timeout to max_retrans
Jakub Jankowski
Re: 3-way handshake sets conntrack timeout to max_retrans
Jozsef Kadlecsik
Re: 3-way handshake sets conntrack timeout to max_retrans
Jakub Jankowski
Re: 3-way handshake sets conntrack timeout to max_retrans
Florian Westphal
Re: 3-way handshake sets conntrack timeout to max_retrans
Jakub Jankowski
[PATCH 0/2 nf-next] Fix mss value announced to the client
Fernando Fernandez Mancera
[PATCH 1/2 nf-next] netfilter: synproxy: fix erroneous tcp mss option
Fernando Fernandez Mancera
Earlier messages
Later messages