Linux Netfilter development
 help / color / mirror / Atom feed
 messages from 2026-09-07 06:55:48 to 2026-09-11 18:40:06 UTC [more...]

[PATCH 01/13 net-next] net: ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack
 2026-09-11 18:39 UTC  (12+ messages)
` [PATCH 11/13 net-next] netfilter: ipv4: guard ip_route_me_harder() with CONFIG_IPV4

[PATCH nf] ipvs: filter some flags received in the backup server
 2026-09-11 18:34 UTC 

[PATCH nft] tests: shell: drop metainfo from the json dump comparison
 2026-09-11 14:59 UTC 

[PATCH nft v3] evaluate: reject negative values for unsigned datatypes
 2026-09-11 14:59 UTC 

[PATCH nf-next] netfilter: conntrack: prevent nf_conntrack_buckets race condition
 2026-09-11 14:42 UTC 

[PATCH net] net: reject a forward path that loops back to the tunnel
 2026-09-11 14:22 UTC  (3+ messages)

[PATCH nf-next 0/4] netfilter: offload a TCP flow whose reply is never seen
 2026-09-11 14:16 UTC  (9+ messages)
` [PATCH nf-next 1/4] netfilter: conntrack: pick up a TCP flow whose SYN was never answered
` [PATCH nf-next 2/4] netfilter: flowtable: promote a flow offloaded in one direction only
` [PATCH nf-next 3/4] netfilter: nft_flow_offload: offload a TCP flow that has no reply
` [PATCH nf-next 4/4] selftests: netfilter: cover a TCP flow whose reply is never seen

[PATCH nf-next v4 01/13] rhashtable: add rhashtable_flush_and_free helper
 2026-09-11 12:54 UTC  (14+ messages)

[PATCH 1/4] lib/ts_bm: advance state->offset past the reported match
 2026-09-11 11:55 UTC  (4+ messages)

[PATCH v2 nf] ipvs: revalidate ihl before icmp_send
 2026-09-11 11:43 UTC 

[PATCH net] netfilter: flowtable: Saturate 16-bit flow_tuple->mtu
 2026-09-11 11:31 UTC  (2+ messages)

[PATCH net,v2 0/4] Netfilter fixes for net
 2026-09-11 11:21 UTC  (5+ messages)
` [PATCH net 1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup
` [PATCH net 2/4] netfilter: nf_tables: fix device name and prefix match in hook lookup
` [PATCH net 3/4] netfilter: nf_nat: unregister and release hooks on error
` [PATCH net 4/4] netfilter: flowtable: hold reference on ct until flow is released

[PATCH nf v2] netfilter: nf_tables: skip expired catchall elements on insert and delete
 2026-09-11 11:14 UTC  (2+ messages)

[PATCH net 0/7] Netfilter/IPVS fixes for net
 2026-09-11  9:56 UTC  (14+ messages)
` [PATCH net 1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup
` [PATCH net 2/7] netfilter: nf_tables: fix device name and prefix match in hook lookup
` [PATCH net 3/7] netfilter: nf_nat: unregister and release hooks on error
` [PATCH net 4/7] ipvs: revalidate ihl before icmp_send
` [PATCH net 5/7] netfilter: flowtable: hold reference on ct until flow is released
` [PATCH net 6/7] netfilter: xt_IDLETIMER: allocate timer with kzalloc()
` [PATCH net 7/7] netfilter: hold reference on module during netlink dump

[PATCH nf,v2] netfilter: flowtable: hold reference on ct until flow is released
 2026-09-11  9:16 UTC 

[PATCH net-next 0/8] Netfilter updates for net-next
 2026-09-11  8:44 UTC  (9+ messages)
` [PATCH net-next 1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL
` [PATCH net-next 2/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target
` [PATCH net-next 3/8] netfilter: nfnetlink: use GFP_KERNEL_ACCOUNT
` [PATCH net-next 4/8] netfilter: nf_tables: "
` [PATCH net-next 5/8] netfilter: synproxy: "
` [PATCH net-next 6/8] netfilter: sysctl: "
` [PATCH net-next 7/8] netfilter: nat: "
` [PATCH net-next 8/8] netfilter: conncount: "

[PATCH] selftests: netfilter: fix nft_audit.sh auditd detection
 2026-09-11  3:56 UTC 

[BUG] WARNING in dev_fill_forward_path
 2026-09-10 21:51 UTC 

[PATCH] netfilter: nft_synproxy: use the family-aware checksum helper
 2026-09-10 20:02 UTC 

[PATCH net-next 0/7] netlink: specs: conntrack: minor spec fixes
 2026-09-10 16:03 UTC  (10+ messages)
` [PATCH net-next 1/7] netlink: specs: conntrack: timestamp is a nest, not a be64
` [PATCH net-next 2/7] netlink: specs: conntrack: fix the get reply attribute lists
` [PATCH net-next 3/7] netlink: specs: conntrack: fix SCTP conntrack state names
` [PATCH net-next 4/7] netlink: specs: conntrack: fix the nat-attrs attribute IDs
` [PATCH net-next 5/7] netlink: specs: conntrack: describe CTA_HELP_INFO
` [PATCH net-next 6/7] netlink: specs: conntrack: fix the per-CPU stats reply
` [PATCH net-next 7/7] netlink: specs: conntrack: tweak definition of obsolete attrs

[PATCH nf-next v2] netfilter: conntrack: make filtering by zone discoverable
 2026-09-10 10:54 UTC 

[PATCH net 06/12] ipvs: bound LBLCR and LBLC cache growth
 2026-09-10 10:26 UTC  (6+ messages)

[PATCH v4 nf 0/2] ipvs: fix LBLC and LBLCR cache growth
 2026-09-10 10:08 UTC  (3+ messages)
` [PATCH v4 nf 1/2] ipvs: fix missing counter decrement in lblc
` [PATCH v4 nf 2/2] ipvs: bound LBLCR and LBLC cache growth

[PATCH nf] net/sched: act_ct: set net pointer before publishing flowtable
 2026-09-10  9:43 UTC  (4+ messages)

[PATCH] netfilter: nft_flow_offload: drop flowtable reference on init error path
 2026-09-10  8:33 UTC 

[PATCH RFC v3 00/13] sysctl: add module aliases
 2026-09-10  7:29 UTC  (8+ messages)

[PATCH nf] netfilter: flowtable: advertise the vlan match in used_keys
 2026-09-10  6:22 UTC  (2+ messages)

[PATCH] netfilter: conntrack_irc: fix port value truncation in parse_dcc()
 2026-09-09 23:33 UTC  (5+ messages)

[PATCH] netfilter: conntrack_amanda: fix port value truncation
 2026-09-09 23:28 UTC  (8+ messages)

[PATCH net] netfilter: nf_dup_netdev: scrub duplicates to preserve the direct path
 2026-09-09 22:35 UTC  (5+ messages)

[PATCH net 0/2] selftests: net: use KHDR_INCLUDES in CFLAGS
 2026-09-09 21:00 UTC  (5+ messages)

[PATCH nf] netfilter: flowtable: advertise the vlan match in used_keys
 2026-09-09 19:21 UTC  (2+ messages)

[PATCH nf] netfilter: ip6t_rpfilter: handle routes without inet6_dev
 2026-09-09 18:52 UTC  (2+ messages)

[PATCH] netfilter: nf_conntrack_h323: fix OOB read in decode_enum()
 2026-09-09 18:32 UTC 

[PATCH nf] ipvs: fix more races around the overload flag
 2026-09-09 17:44 UTC  (2+ messages)

[PATCH nf] ipvs: fix buffer overflow when sending sync messages
 2026-09-09 15:55 UTC 

[PATCH nf] netfilter: ctnetlink: fix inverted IPv6 address match in dump filter
 2026-09-09 14:49 UTC 

[PATCH nf v2 0/1] netfilter: x_tables: avoid holding mutex over faultable user copies
 2026-09-09 14:36 UTC  (2+ messages)
` [PATCH nf v2 1/1] "

[PATCH nf] ipvs: read the seq_mask only once on sync
 2026-09-09 14:34 UTC  (2+ messages)

[PATCH nf-next] netfilter: flowtable: check namespace before iterating flows
 2026-09-09 14:18 UTC  (3+ messages)

[nf PATCH v4] netfilter: nfnetlink: Fix for interrupted hook dumps
 2026-09-09  9:34 UTC 

[PATCH nf 0/1] netfilter: x_tables: avoid holding mutex over faultable user copies
 2026-09-09  0:52 UTC  (2+ messages)

[nf PATCH v3] netfilter: nfnetlink: Fix for interrupted hook dumps
 2026-09-09  0:34 UTC  (6+ messages)

[PATCH nf,v3 RESEND 1/2] netfilter: nf_nat: unregister and release hooks on error
 2026-09-09  0:14 UTC  (2+ messages)
` [PATCH nf,v3 RESEND 2/2] netfilter: nfnetlink: Fix for interrupted hook dumps

[PATCH nf] netfilter: nf_tables: skip expired catchall elements in dedup walk
 2026-09-08 23:31 UTC  (3+ messages)

[PATCH nf] netfilter: set on this module via struct netlink_dump_control
 2026-09-08 22:52 UTC  (2+ messages)

[PATCH net,v2 0/9] Netfilter/IPVS fixes for net
 2026-09-08 21:00 UTC  (18+ messages)
` [PATCH net 1/9] ipvs: reject invalid states in connection template sync records
` [PATCH net 2/9] ipvs: fix reversed sequence option serialization
` [PATCH net 3/9] netfilter: nf_conntrack_sip: fix OOB read in sip_skip_whitespace()
` [PATCH net 4/9] netfilter: cttimeout: prevent UAF during module unload
` [PATCH net 5/9] netfilter: nf_log: unregister loggers before per-net teardown
` [PATCH net 6/9] netfilter: nfnetlink_log: cope with concurrent instance destruction
` [PATCH net 7/9] netfilter: arp_tables: remove the 32bit compat interface
` [PATCH net 8/9] netfilter: ip6_tables: set F_PROTO when proto value is nonzero
` [PATCH net 9/9] netfilter: report NLM_F_DUMP_FILTERED when all is filtered out

[PATCH net] ipvs: shut down destination trash timer on netns cleanup
 2026-09-08 15:48 UTC  (3+ messages)

[nf-next PATCH 0/4] netfilter: Conntrack counter review
 2026-09-08 10:02 UTC  (5+ messages)
` [nf-next PATCH 1/4] netfilter: conntrack: Untangle insert_failed counter from others
` [nf-next PATCH 2/4] netfilter: conntrack: Untangle drop and invalid counters
` [nf-next PATCH 3/4] netfilter: conntrack: nf_ct_seq_adjust to return error cause
` [nf-next PATCH 4/4] netfilter: conntrack: Improve invalid packet stats

[PATCH nft v2] extend ct_label_set with a negative ct label match and switch to inline counter checks (.nodump)
 2026-09-08  9:43 UTC 

[PATCH] netfilter: nf_conntrack_h323: fix OOB read in decode_enum()
 2026-09-08  3:18 UTC  (2+ messages)

[PATCH nf] netfilter: xt_IDLETIMER: allocate timer with kzalloc()
 2026-09-07 19:17 UTC 

[PATCH nf] netfilter: flowtable: hold reference on ct until flow is released
 2026-09-07 19:11 UTC 

[PATCH nf-next,v3 1/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target
 2026-09-07 18:55 UTC  (8+ messages)
` [PATCH nf-next,v3 2/8] netfilter: nfnetlink: use GFP_KERNEL_ACCOUNT
` [PATCH nf-next,v3 3/8] netfilter: nf_tables: "
` [PATCH nf-next,v3 4/8] netfilter: synproxy: "
` [PATCH nf-next,v3 5/8] netfilter: sysctl: "
` [PATCH nf-next,v3 6/8] netfilter: nat: "
` [PATCH nf-next,v3 7/8] netfilter: conncount: "
` [PATCH nf-next,v3 8/8] netfilter: ipset: "

[PATCH nf] ipvs: revalidate ihl before icmp_send
 2026-09-07 18:37 UTC 

[PATCH net-next v2 0/3] netfilter: conntrack: add shared port parser and use it in IRC and Amanda helpers
 2026-09-07 16:39 UTC  (4+ messages)
` [PATCH net-next v3 0/4] netfilter: conntrack: shared port parser for helpers
  ` [PATCH net-next v3 3/4] netfilter: nf_conntrack_amanda: use nf_ct_helper_parse_port()

[PATCH nf 0/1] netfilter: xt_IDLETIMER: restrict to init_net
 2026-09-07 12:03 UTC  (2+ messages)
` [PATCH nf 1/1] "

[PATCH nf-next] netfilter: conntrack: make filtering by zone discoverable
 2026-09-07  9:57 UTC  (2+ messages)

[PATCH nf-next v2 0/3] netfilter: fix typos in comments
 2026-09-07  9:52 UTC  (4+ messages)
` [PATCH nf-next v2 1/3] netfilter: arp_tables: fix typo "alignement" in comment
` [PATCH nf-next v2 2/3] netfilter: ipset: fix typo "artifical" "
` [PATCH nf-next v2 3/3] selftests: netfilter: fix typo "adress" "

[PATCH nf-next v2 0/6] net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload
 2026-09-07  7:33 UTC  (7+ messages)
` [PATCH nf-next v2 1/6] net: netfilter: nf_flow_table: recognize IPv4/IPv6 in tunnel proto matching
` [PATCH nf-next v2 2/6] net: netfilter: nf_flow_table: set inner protocol when popping tunnel header
` [PATCH nf-next v2 3/6] net: netfilter: nf_flow_table: populate tunnel tuple regardless of inner protocol
` [PATCH nf-next v2 4/6] net: netfilter: add encap_proto to flow_offload_tunnel
` [PATCH nf-next v2 5/6] net: netfilter: nf_flow_table: refactor MTU check for tunnel offload
` [PATCH nf-next v2 6/6] net: netfilter: nf_flow_table: unify tunnel push for IPv4 and IPv6

[PATCH net v2] net/ipv6: don't route packets with unknown source address
 2026-09-07  7:24 UTC  (3+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox