Linux Netfilter development
 help / color / mirror / Atom feed
 messages from 2026-08-31 14:49:44 to 2026-09-06 22:20:15 UTC [more...]

[PATCH 1/4] lib/ts_bm: advance state->offset past the reported match
 2026-09-06 22:19 UTC  (3+ messages)

[PATCH nf] netfilter: flowtable: advertise the vlan match in used_keys
 2026-09-06 14:24 UTC  (2+ messages)

[PATCH nf] netfilter: flowtable: advertise the vlan match in used_keys
 2026-09-06 14:19 UTC 

[PATCH 5.10.y] netfilter: nf_tables: make nft_object rhltable per table
 2026-09-06 13:32 UTC  (2+ messages)

[PATCH 6.1.y] netfilter: nf_tables: make nft_object rhltable per table
 2026-09-06 13:32 UTC  (2+ messages)

[PATCH nf v2 0/1] netfilter: ip6t_rt: fix zero-address non-strict match out-of-bounds read
 2026-09-06 13:29 UTC  (2+ messages)
` [PATCH nf v2 1/1] "

[PATCH nf v2] netfilter: ip6t_rpfilter: reject routes without inet6_dev
 2026-09-06  8:44 UTC 

[PATCH nf v2] netfilter: ip6t_rpfilter: reject routes without inet6_dev
 2026-09-06  7:54 UTC 

[PATCH nf] netfilter: ip6t_rpfilter: handle routes without inet6_dev
 2026-09-06  7:46 UTC  (3+ messages)

[BUG] net/ipv6: NULL pointer dereference in ip6_rt_copy_init()
 2026-09-06  3:37 UTC 

[PATCH nf v3] netfilter: nft_payload: restrict checksum offsets to known values
 2026-09-05  5:01 UTC 

[PATCH nf 0/1] netfilter: xt_IDLETIMER: fix out-of-bounds heap read in checkentry
 2026-09-05  4:10 UTC  (4+ messages)
` [PATCH nf 1/1] netfilter: xt_IDLETIMER: validate label before debug logging "

[PATCH bpf v3 0/2] bpf: Fix socket leaks around connect(AF_UNSPEC)+listen()
 2026-09-05  1:20 UTC  (8+ messages)
` [PATCH bpf v3 1/2] bpf: Unconditionally take socket references in lookup helpers
` [PATCH bpf v3 2/2] bpf: Fix reference leak in bpf_sk_assign()

[PATCH nf-next v4 00/13] ipset: replace internal hash table with rhashtable
 2026-09-04 19:29 UTC  (15+ messages)
` [PATCH nf-next v4 01/13] rhashtable: add rhashtable_flush_and_free helper
` [PATCH nf-next v4 02/13] netfilter: ipset: add rhashtable boilerplate stubs
` [PATCH nf-next v4 03/13] netfilter: ipset: add rhltable "
` [PATCH nf-next v4 04/13] netfilter: ipset: replace internal hash table with rhashtable
` [PATCH nf-next v4 05/13] netfilter: ipset: re-add forceadd support
` [PATCH nf-next v4 06/13] netfilter: ipset: also report mem size for cidr storage to userspace
` [PATCH nf-next v4 07/13] netfilter: ipset: remove obsolete data_next stubs
` [PATCH nf-next v4 08/13] netfilter: ipset: remove last region lock usage
` [PATCH nf-next v4 09/13] netfilter: ipset: remove multi-flag
` [PATCH nf-next v4 10/13] netfilter: ipset: remove resize completely
` [PATCH nf-next v4 11/13] netfilter: ipset: remove trivial kvfree wrapper
` [PATCH nf-next v4 12/13] netfilter: ipset: use plain rcu_read_lock
` [PATCH nf-next v4 13/13] netfilter: ipset: improve lockdep coverage

[PATCH net 0/2] selftests: net: use KHDR_INCLUDES in CFLAGS
 2026-09-04 18:51 UTC  (8+ messages)
` [PATCH net 1/2] selftests: netfilter: "
` [PATCH net 2/2] selftests: forwarding: "

[PATCH nf-next] netfilter: conntrack: make filtering by zone discoverable
 2026-09-04 18:13 UTC  (3+ messages)

[PATCH nf] netfilter: ipset: do not update comments from kernel-side adds
 2026-09-04 18:03 UTC 

[PATCH RFC v3 00/13] sysctl: add module aliases
 2026-09-04 17:45 UTC  (5+ messages)

[PATCH nf 0/1] netfilter: ip6t_rt: fix zero-address non-strict match out-of-bounds read
 2026-09-04 17:38 UTC  (3+ messages)
` [PATCH nf 1/1] "

[PATCH net] ipvs: shut down destination trash timer on netns cleanup
 2026-09-04 13:51 UTC  (2+ messages)

[nf PATCH v3] netfilter: nfnetlink: Fix for interrupted hook dumps
 2026-09-04 12:52 UTC 

[PATCH] net: netfilter: fix typo "specifiy" in comment
 2026-09-04 11:45 UTC 

[PATCH net 00/12] Netfilter/IPVS fixes for net
 2026-09-04 10:59 UTC  (23+ messages)
` [PATCH net 01/12] ipvs: reject invalid states in connection template sync records
` [PATCH net 02/12] ipvs: fix reversed sequence option serialization
` [PATCH net 03/12] netfilter: nf_conntrack_sip: fix OOB read in sip_skip_whitespace()
` [PATCH net 04/12] netfilter: cttimeout: prevent UAF during module unload
` [PATCH net 05/12] netfilter: nf_log: unregister loggers before per-net teardown
` [PATCH net 06/12] ipvs: bound LBLCR and LBLC cache growth
` [PATCH net 07/12] netfilter: nft_payload: restrict checksum offsets to known values
` [PATCH net 08/12] netfilter: nfnetlink_log: cope with concurrent instance destruction
` [PATCH net 09/12] netfilter: nfnetlink_queue: hold nfnl mutex in event notifier
` [PATCH net 10/12] netfilter: arp_tables: remove the 32bit compat interface
` [PATCH net 11/12] netfilter: ip6_tables: set F_PROTO when proto value is nonzero
` [PATCH net 12/12] netfilter: report NLM_F_DUMP_FILTERED when all is filtered out

[PATCH net v2] net/ipv6: don't route packets with unknown source address
 2026-09-04 10:21 UTC  (4+ messages)

[PATCH nf] netfilter: nft_payload: restrict checksum offsets to known values
 2026-09-04  9:57 UTC 

[nf PATCH v2] netfilter: nfnetlink: Fix for interrupted hook dumps
 2026-09-04  8:23 UTC  (3+ messages)

[ANNOUNCE] A Syzbot-style Platform for Verifying and Fixing LLM-reported Bugs
 2026-09-04  6:51 UTC  (7+ messages)

[PATCH 5.10] netfilter: nf_queue: pin bridge device while NFQUEUE holds fake dst
 2026-09-04  2:52 UTC  (2+ messages)

[conntrack-tools PATCH v2] conntrack.8: Document --stats counters
 2026-09-03 14:35 UTC  (4+ messages)

[PATCH nf v2 0/1] netfilter: nf_dup: disable duplication in user namespaces
 2026-09-03 11:55 UTC  (2+ messages)
` [PATCH nf v2 1/1] "

[PATCH nf-next,v2 1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target
 2026-09-03 11:34 UTC  (8+ messages)
` [PATCH nf-next,v2 2/8] netfilter: nfnetlink: use GFP_KERNEL_ACCOUNT
` [PATCH nf-next,v2 3/8] netfilter: nf_tables: "
` [PATCH nf-next,v2 4/8] netfilter: synproxy: "
` [PATCH nf-next,v2 5/8] netfilter: sysctl: "
` [PATCH nf-next,v2 6/8] netfilter: nat: "
` [PATCH nf-next,v2 7/8] netfilter: conncount: "
` [PATCH nf-next,v2 8/8] netfilter: ipset: "

[PATCH v2 0/7] Change skb secmarks to x-array indexes
 2026-09-03  9:40 UTC  (15+ messages)
  ` [PATCH v2 1/7] net, smack: Create a function to set secmarks
  ` [PATCH v2 2/7] LSM: Implement x array functions for secmarks
  ` [PATCH v2 3/7] LSM: Two hooks for manipulating struct lsm_prop
  ` [PATCH v2 4/7] SELinux: hooks for secctx_to_lsmprop and update_lsmprop
  ` [PATCH v2 5/7] Smack: "
  ` [PATCH v2 6/7] Apparmor: "
  ` [PATCH v2 7/7] net, lsm: Change skb secmarks to x-array indexes

[nft PATCH] tests: shell: Test odd netdev hook updates
 2026-09-03  8:10 UTC  (5+ messages)

[PATCH nf 0/1] netfilter: nf_dup: prevent asynchronous duplicate recursion
 2026-09-03  8:09 UTC  (6+ messages)
` [PATCH nf 1/1] "

[PATCH nf-next v2 1/2] netfilter: flowtable: carry a priority into the offload
 2026-09-03  7:34 UTC  (3+ messages)
` [PATCH nf-next v2 2/2] selftests: netfilter: nft_flowtable.sh: check the priority a flow carries

[PATCH 6.1.y 6.6.y] netfilter: nft_set_pipapo: restore cloned mapping table memcg accounting
 2026-09-03  0:01 UTC  (6+ messages)

[PATCH nf,v3] netfilter: nf_nat: unregister and release hooks on error
 2026-09-02 23:28 UTC 

[PATCH nf,v2] netfilter: nf_nat: unregister and release hooks on error
 2026-09-02 23:06 UTC 

[PATCH 0/7] Change skb secmarks to x-array indexes
 2026-09-02 19:37 UTC  (9+ messages)
  ` [PATCH 1/7] net, smack: Create a function to set secmarks
  ` [PATCH 2/7] LSM: Implement x array functions for secmarks
  ` [PATCH 3/7] LSM: Two hooks for manipulating struct lsm_prop
  ` [PATCH 4/7] SELinux: hooks for secctx_to_lsmprop and update_lsmprop
  ` [PATCH 5/7] Smack: "
  ` [PATCH 6/7] Apparmor: "
  ` [PATCH 7/7] net, lsm: Change skb secmarks to x-array indexes

[nft PATCH] libnftables: Drop symbol nft_bison_have_extended_errors
 2026-09-02 13:16 UTC  (4+ messages)

[nf PATCH] netfilter: nf_tables: Fix netdev hook sanity checks
 2026-09-02 10:41 UTC  (3+ messages)

[PATCH net] net/ipv6: don't route packets with unknown source address
 2026-09-02 10:08 UTC  (4+ messages)
` [syzbot ci] "

[PATCH nf v3 0/5] netfilter: ipset: rhashtable conversion
 2026-09-02  7:42 UTC  (5+ messages)
` [PATCH nf v3 3/5] netfilter: ipset: replace internal hash table with rhashtable

[RESEND PATCH nf-next] netfilter: nf_conntrack_h323: fix double cursor advance in decode_int()
 2026-09-02  4:35 UTC  (2+ messages)
` [RESEND,nf-next] "

[PATCH nf] netfilter: nf_nat: unregister and release hooks on error
 2026-09-01 21:55 UTC  (2+ messages)

[syzbot] Monthly netfilter report (Sep 2026)
 2026-09-01 20:33 UTC 

[ANNOUNCE] nftables 1.1.7 release
 2026-09-01 17:44 UTC 

[PATCH nf-next 0/6] net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload
 2026-09-01 16:32 UTC  (7+ messages)
` [PATCH nf-next 1/6] net: netfilter: nf_flow_table: recognize IPv4/IPv6 in tunnel proto matching
` [PATCH nf-next 2/6] net: netfilter: nf_flow_table: set inner protocol when popping tunnel header
` [PATCH nf-next 3/6] net: netfilter: nf_flow_table: populate tunnel tuple regardless of inner protocol
` [PATCH nf-next 4/6] net: netfilter: nf_flow_table: refactor MTU check for tunnel offload
` [PATCH nf-next 5/6] net: netfilter: add encap_proto to flow_offload_tunnel
` [PATCH nf-next 6/6] net: netfilter: nf_flow_table: unify tunnel push for IPv4 and IPv6

[PATCH nf 0/1] netfilter: x_tables: avoid holding mutex over faultable user copies
 2026-09-01 13:47 UTC  (2+ messages)
` [PATCH nf 1/1] "

[RFC] ipv6: preserving route lookup provenance in dst caches
 2026-09-01 12:24 UTC 

[PATCH nf-next] netfilter: flowtable: carry a priority into the offload
 2026-09-01 10:41 UTC  (3+ messages)

[PATCH 6.6.y 0/4] ipv4: start using dst_dev_rcu()
 2026-09-01  1:21 UTC  (6+ messages)
` [PATCH 6.6.y 1/4] net: dst: add four helpers to annotate data-races around dst->dev
` [PATCH 6.6.y 2/4] ipv4: adopt dst_dev, skb_dst_dev and skb_dst_dev_net[_rcu]
` [PATCH 6.6.y 3/4] net: dst: introduce dst->dev_rcu
` [PATCH 6.6.y 4/4] ipv4: start using dst_dev_rcu()

[PATCH 6.12,6.6,6.1,5.15,5.10] netfilter: nft_set_pipapo_avx2: add missing vzeroupper
 2026-08-31 19:48 UTC 

[PATCH 6.1.y 6.6.y] netfilter: nft_set_pipapo: account mapping table allocation
 2026-08-31 18:07 UTC  (2+ messages)
` [PATCH 6.1.y 6.6.y v2] netfilter: nf_tables: missing objects with no memcg accounting

[ANNOUNCE] libnftnl 1.3.2 release
 2026-08-31 17:39 UTC 

[PATCH 0/4] ipv4: start using dst_dev_rcu()
 2026-08-31 16:08 UTC  (4+ messages)
` [PATCH v6.1.y 4/4] "

[PATCH nf v3] netfilter: disable br_netfilter in user namespaces
 2026-08-31 15:26 UTC  (2+ messages)

[PATCH v2 nf] netfilter: disable br_netfilter in user namespaces
 2026-08-31 15:02 UTC  (4+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox