Linux Netfilter development
 help / color / mirror / Atom feed
 messages from 2026-09-09 14:45:09 to 2026-09-16 23:17:06 UTC [more...]

[PATCH net 00/10] Netfilter/IPVS fixes for net
 2026-09-16 23:16 UTC  (7+ messages)
` [PATCH net 01/10] netfilter: flowtable: publish HW_DEAD after worker is done
` [PATCH net 02/10] netfilter: nfnetlink_queue: hold nfnl mutex in event notifier
` [PATCH net 03/10] netfilter: ip6t_rpfilter: reject routes without inet6_dev
` [PATCH net 04/10] netfilter: ip6t_rt: fix zero-address non-strict match out-of-bounds read
` [PATCH net 05/10] netfilter: nft_synproxy: use the family-aware checksum helper
` [PATCH net 06/10] ipvs: revalidate ihl before icmp_send

[PATCH nf,v2] netfilter: nfnetlink_queue: hash queue instance by portid too
 2026-09-16 22:15 UTC  (2+ messages)

[PATCH nf-next v2 0/6] net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload
 2026-09-16 22:14 UTC  (3+ messages)
` [PATCH nf-next v2 6/6] net: netfilter: nf_flow_table: unify tunnel push for IPv4 and IPv6

[PATCH nf-next] netfilter: nfnetlink_queue: hash queue instance by portid too
 2026-09-16 22:00 UTC 

[PATCH v3 nf-next 0/3] ipvs: add per-service secure_tcp
 2026-09-16 20:50 UTC  (4+ messages)
` [PATCH v3 nf-next 1/3] ipvs: add flags for per-service secure TCP state table
` [PATCH v3 nf-next 2/3] ipvs: tcp: enable per-connection secure_tcp in state machine
` [PATCH v3 nf-next 3/3] selftests: netfilter: ipvs: add per-service secure_tcp test

network flow offloading broken in 6.18.45+
 2026-09-16 19:28 UTC  (7+ messages)

[PATCH] netfilter: conntrack: fix nf_conntrack_expect_max default value in documentation
 2026-09-16 18:22 UTC  (2+ messages)

[PATCH nf-next v5 0/6] ipset: replace internal hash table with rhashtable
 2026-09-16 17:53 UTC  (11+ messages)
` [PATCH nf-next v5 1/6] rhashtable: Add rhashtable_flush_and_free helper
` [PATCH nf-next v5 2/6] netfilter: ipset: add rhashtable boilerplate stubs
` [PATCH nf-next v5 3/6] netfilter: ipset: add rhltable "
` [PATCH nf-next v5 4/6] netfilter: ipset: replace internal hash table with rhashtable
` [PATCH nf-next v5 5/6] netfilter: ipset: re-add forceadd support
` [PATCH nf-next v5 6/6] netfilter: ipset: also report mem size for cidr storage to userspace

[PATCH net] netfilter: flowtable: Saturate 16-bit flow_tuple->mtu
 2026-09-16 15:01 UTC  (3+ messages)

[PATCH] netfilter: nf_dup_netdev: Fix net_device reference leak in nft_fwd_dup_netdev_offload()
 2026-09-16  8:41 UTC  (2+ messages)

[PATCH nft] tests: shell: add packetpath test for nat on loopback
 2026-09-16  7:18 UTC 

[PATCH 0/4] ipv4: start using dst_dev_rcu()
 2026-09-16  1:52 UTC  (6+ messages)
` [PATCH v6.1.y 4/4] "

[PATCH RFC v3 00/13] sysctl: add module aliases
 2026-09-16  0:40 UTC  (9+ messages)

[PATCH v2 0/4] ipvs: add per-service secure_tcp
 2026-09-15 22:41 UTC  (3+ messages)
` [PATCH v2 1/4] ipvs: add flags for per-service secure TCP state table
` [PATCH v2 2/4] ipvs: stamp per-service secure_tcp on connections

[syzbot] [netfilter?] WARNING in nf_flow_table_extend_ct_timeout
 2026-09-15 22:34 UTC 

[PATCH 0/4] ipvs: add per-service secure_tcp
 2026-09-15 19:39 UTC  (6+ messages)
` [PATCH 1/4] ipvs: add flags for per-service secure TCP state table
` [PATCH 2/4] ipvs: stamp per-service secure_tcp on new connections
` [PATCH 3/4] ipvs: tcp: enable per-connection secure_tcp in state machine
` [PATCH 4/4] selftests: netfilter: ipvs: add per-service secure_tcp test

[syzbot] [netfilter?] BUG: workqueue lockup in batadv_tt_purge
 2026-09-15 15:10 UTC 

[PATCH net-next 0/8] Netfilter updates for net-next
 2026-09-15  0:20 UTC  (10+ messages)
` [PATCH net-next 1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL
` [PATCH net-next 2/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target
` [PATCH net-next 3/8] netfilter: nfnetlink: use GFP_KERNEL_ACCOUNT
` [PATCH net-next 4/8] netfilter: nf_tables: "
` [PATCH net-next 5/8] netfilter: synproxy: "
` [PATCH net-next 6/8] netfilter: sysctl: "
` [PATCH net-next 7/8] netfilter: nat: "
` [PATCH net-next 8/8] netfilter: conncount: "

[PATCH net,v2 0/4 RESEND] Netfilter fixes for net
 2026-09-15  0:10 UTC  (6+ messages)
` [PATCH net 1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup
` [PATCH net 2/4] netfilter: nf_tables: fix device name and prefix match in hook lookup
` [PATCH net 3/4] netfilter: nf_nat: unregister and release hooks on error
` [PATCH net 4/4] netfilter: flowtable: hold reference on ct until flow is released

[PATCH nft 1/2] expression: assert if clone interface is undefine
 2026-09-14 19:28 UTC  (2+ messages)
` [PATCH nft 2/2] remove EXPR_SET_ELEM, replace it by struct set_elem

[PATCH net 0/1] ipvs: bound twos scheduler destination walks
 2026-09-14 18:01 UTC  (3+ messages)
` [PATCH net 1/1] "

[PATCH nf 1/6] netfilter: nf_conntrack: validate skb->_nfct and packet headers
 2026-09-14 16:58 UTC  (6+ messages)
` [PATCH nf 2/6] netfilter: nf_conntrack: refactor helper call logic in nf_confirm()
` [PATCH nf 3/6] netfilter: nf_conntrack: verify L4 protocol before calling helper
` [PATCH nf 4/6] netfilter: conntrack: replace open-coded helper invocation
` [PATCH nf 5/6] netfilter: nf_conntrack: harden helper invocation with tuple revalidation
` [PATCH nf 6/6] netfilter: nft_ct: validate timeout object protocol

[PATCH nf,v2] net: update dev_fill_forward_path() to handle mac80211 special case
 2026-09-14 12:33 UTC 

[PATCH nf] net: update dev_fill_forward_path() to handle mac80211 special case
 2026-09-14 12:24 UTC 

[PATCH nf v3] netfilter: nf_tables: skip expired catchall elements on insert and delete
 2026-09-14 11:51 UTC 

[PATCH nft] tests: shell: add packetpath test for timeout policy overrides
 2026-09-14  8:33 UTC 

[PATCH nf-next v5 0/3] flow offload teardown when layer 2 roaming
 2026-09-14  7:25 UTC  (4+ messages)
` [PATCH nf-next v5 1/3] netfilter: flow: Add bridge_vid member
` [PATCH nf-next v5 2/3] netfilter: flowtable: teardown direct xmit flows when the fdb entry moves
` [PATCH nf-next v5 3/3] selftests: netfilter: nft_flowtable.sh: roam a host between two bridge ports

[PATCH nf] netfilter: flowtable: advertise the vlan match in used_keys
 2026-09-13 10:42 UTC  (5+ messages)
` [PATCH nf v2 0/2] netfilter: flowtable: correct and advertise the vlan match
  ` [PATCH nf v2 1/2] netfilter: flowtable: fill the vlan key from the outermost tag only
  ` [PATCH nf v2 2/2] netfilter: flowtable: advertise the vlan match in used_keys

[PATCH nf 0/1] ipvs: avoid stack overflow from recursive connection expiration
 2026-09-13  7:13 UTC  (4+ messages)
` [PATCH nf 1/1] "

[PATCH net v2] net: remove WARN_ON_ONCE() from the dev_fill_forward_path() loop check
 2026-09-12  8:22 UTC  (2+ messages)

[PATCH net] net: reject a forward path that loops back to the tunnel
 2026-09-12  7:42 UTC  (4+ messages)

[PATCH net] netfilter: ctnetlink: fix suspicious RCU usage in expect_iter_name
 2026-09-12  1:10 UTC 

[syzbot] [netfilter?] WARNING: suspicious RCU usage in expect_iter_name
 2026-09-12  0:57 UTC 

[PATCH net-next 0/7] netlink: specs: conntrack: minor spec fixes
 2026-09-12  0:00 UTC  (11+ messages)
` [PATCH net-next 1/7] netlink: specs: conntrack: timestamp is a nest, not a be64
` [PATCH net-next 2/7] netlink: specs: conntrack: fix the get reply attribute lists
` [PATCH net-next 3/7] netlink: specs: conntrack: fix SCTP conntrack state names
` [PATCH net-next 4/7] netlink: specs: conntrack: fix the nat-attrs attribute IDs
` [PATCH net-next 5/7] netlink: specs: conntrack: describe CTA_HELP_INFO
` [PATCH net-next 6/7] netlink: specs: conntrack: fix the per-CPU stats reply
` [PATCH net-next 7/7] netlink: specs: conntrack: tweak definition of obsolete attrs

[PATCH nft] src: release scope symbols by reference count
 2026-09-11 20:38 UTC  (2+ messages)

[PATCH 01/13 net-next] net: ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack
 2026-09-11 18:59 UTC  (13+ messages)
` [PATCH 11/13 net-next] netfilter: ipv4: guard ip_route_me_harder() with CONFIG_IPV4

[PATCH nf] ipvs: filter some flags received in the backup server
 2026-09-11 18:34 UTC 

[PATCH nft] tests: shell: drop metainfo from the json dump comparison
 2026-09-11 14:59 UTC 

[PATCH nft v3] evaluate: reject negative values for unsigned datatypes
 2026-09-11 14:59 UTC 

[PATCH nf-next] netfilter: conntrack: prevent nf_conntrack_buckets race condition
 2026-09-11 14:42 UTC 

[PATCH nf-next 0/4] netfilter: offload a TCP flow whose reply is never seen
 2026-09-11 14:16 UTC  (9+ messages)
` [PATCH nf-next 1/4] netfilter: conntrack: pick up a TCP flow whose SYN was never answered
` [PATCH nf-next 2/4] netfilter: flowtable: promote a flow offloaded in one direction only
` [PATCH nf-next 3/4] netfilter: nft_flow_offload: offload a TCP flow that has no reply
` [PATCH nf-next 4/4] selftests: netfilter: cover a TCP flow whose reply is never seen

[PATCH nf-next v4 01/13] rhashtable: add rhashtable_flush_and_free helper
 2026-09-11 12:54 UTC  (7+ messages)

[PATCH 1/4] lib/ts_bm: advance state->offset past the reported match
 2026-09-11 11:55 UTC  (4+ messages)

[PATCH v2 nf] ipvs: revalidate ihl before icmp_send
 2026-09-11 11:43 UTC 

[PATCH net,v2 0/4] Netfilter fixes for net
 2026-09-11 11:21 UTC  (5+ messages)
` [PATCH net 1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup
` [PATCH net 2/4] netfilter: nf_tables: fix device name and prefix match in hook lookup
` [PATCH net 3/4] netfilter: nf_nat: unregister and release hooks on error
` [PATCH net 4/4] netfilter: flowtable: hold reference on ct until flow is released

[PATCH nf v2] netfilter: nf_tables: skip expired catchall elements on insert and delete
 2026-09-11 11:14 UTC  (2+ messages)

[PATCH net 0/7] Netfilter/IPVS fixes for net
 2026-09-11  9:56 UTC  (14+ messages)
` [PATCH net 1/7] netfilter: nft_nat: fully initialise new_addr in netmap setup
` [PATCH net 2/7] netfilter: nf_tables: fix device name and prefix match in hook lookup
` [PATCH net 3/7] netfilter: nf_nat: unregister and release hooks on error
` [PATCH net 4/7] ipvs: revalidate ihl before icmp_send
` [PATCH net 5/7] netfilter: flowtable: hold reference on ct until flow is released
` [PATCH net 6/7] netfilter: xt_IDLETIMER: allocate timer with kzalloc()
` [PATCH net 7/7] netfilter: hold reference on module during netlink dump

[PATCH nf,v2] netfilter: flowtable: hold reference on ct until flow is released
 2026-09-11  9:16 UTC 

[PATCH] selftests: netfilter: fix nft_audit.sh auditd detection
 2026-09-11  3:56 UTC 

[BUG] WARNING in dev_fill_forward_path
 2026-09-10 21:51 UTC 

[PATCH] netfilter: nft_synproxy: use the family-aware checksum helper
 2026-09-10 20:02 UTC 

[PATCH nf-next v2] netfilter: conntrack: make filtering by zone discoverable
 2026-09-10 10:54 UTC 

[PATCH net 06/12] ipvs: bound LBLCR and LBLC cache growth
 2026-09-10 10:26 UTC  (6+ messages)

[PATCH v4 nf 0/2] ipvs: fix LBLC and LBLCR cache growth
 2026-09-10 10:08 UTC  (3+ messages)
` [PATCH v4 nf 1/2] ipvs: fix missing counter decrement in lblc
` [PATCH v4 nf 2/2] ipvs: bound LBLCR and LBLC cache growth

[PATCH nf] net/sched: act_ct: set net pointer before publishing flowtable
 2026-09-10  9:43 UTC  (4+ messages)

[PATCH] netfilter: nft_flow_offload: drop flowtable reference on init error path
 2026-09-10  8:33 UTC 

[PATCH nf] netfilter: flowtable: advertise the vlan match in used_keys
 2026-09-10  6:22 UTC  (2+ messages)

[PATCH] netfilter: conntrack_irc: fix port value truncation in parse_dcc()
 2026-09-09 23:33 UTC  (3+ messages)

[PATCH] netfilter: conntrack_amanda: fix port value truncation
 2026-09-09 23:28 UTC  (4+ messages)

[PATCH net] netfilter: nf_dup_netdev: scrub duplicates to preserve the direct path
 2026-09-09 22:35 UTC  (5+ messages)

[PATCH net 0/2] selftests: net: use KHDR_INCLUDES in CFLAGS
 2026-09-09 21:00 UTC  (2+ messages)

[PATCH nf] netfilter: ip6t_rpfilter: handle routes without inet6_dev
 2026-09-09 18:52 UTC  (2+ messages)

[PATCH] netfilter: nf_conntrack_h323: fix OOB read in decode_enum()
 2026-09-09 18:32 UTC 

[PATCH nf] ipvs: fix more races around the overload flag
 2026-09-09 17:44 UTC  (2+ messages)

[PATCH nf] ipvs: fix buffer overflow when sending sync messages
 2026-09-09 15:55 UTC 

[PATCH nf] netfilter: ctnetlink: fix inverted IPv6 address match in dump filter
 2026-09-09 14:49 UTC 

[PATCH nf v2 0/1] netfilter: x_tables: avoid holding mutex over faultable user copies
 2026-09-09 14:36 UTC 


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox