Linux Netfilter development
 help / color / mirror / Atom feed
 messages from 2026-09-10 18:55:44 to 2026-09-18 11:28:55 UTC [more...]

[PATCH net,v2 0/8] Netfilter/IPVS fixes for net
 2026-09-18 11:28 UTC  (4+ messages)
` [PATCH net 1/8] netfilter: flowtable: publish HW_DEAD after worker is done
` [PATCH net 2/8] netfilter: nfnetlink_queue: hold nfnl mutex in event notifier
` [PATCH net 3/8] netfilter: ip6t_rpfilter: reject routes without inet6_dev

[PATCH nf 0/1] netfilter: nf_ip6_checksum: validate checksum offset
 2026-09-18 10:38 UTC  (3+ messages)
` [PATCH nf 1/1] "

[PATCH net 00/10] Netfilter/IPVS fixes for net
 2026-09-18 10:23 UTC  (25+ messages)
` [PATCH net 01/10] netfilter: flowtable: publish HW_DEAD after worker is done
      ` my summary of LLM judgement in this PR [was Re: [PATCH net 01/10] netfilter: flowtable: publish HW_DEAD after worker is done]
` [PATCH net 02/10] netfilter: nfnetlink_queue: hold nfnl mutex in event notifier
` [PATCH net 03/10] netfilter: ip6t_rpfilter: reject routes without inet6_dev
` [PATCH net 04/10] netfilter: ip6t_rt: fix zero-address non-strict match out-of-bounds read
` [PATCH net 05/10] netfilter: nft_synproxy: use the family-aware checksum helper
` [PATCH net 06/10] ipvs: revalidate ihl before icmp_send
` [PATCH net 07/10] ipvs: filter some flags received in the backup server
` [PATCH net 08/10] netfilter: ctnetlink: fix suspicious RCU usage in expect_iter_name
` [PATCH net 09/10] net: remove WARN_ON_ONCE() from the dev_fill_forward_path() loop check
` [PATCH net 10/10] netfilter: nf_tables: skip expired catchall elements on insert and delete

[PATCH nf-next v5] netfilter: ip6tables: hotdrop malformed hbh/dst and srh headers
 2026-09-18  6:18 UTC 

[PATCH nf] ipvs: filter some flags received in the backup server
 2026-09-18  4:23 UTC  (2+ messages)

[syzbot] [netfilter?] INFO: task hung in nf_tables_valid_genid (3)
 2026-09-18  0:29 UTC 

[PATCH net 0/1] ipvs: bound twos scheduler destination walks
 2026-09-17 20:06 UTC  (5+ messages)
` [PATCH net 1/1] "

[nft PATCH] Fix for warnings when compiling for 32bit arch
 2026-09-17 17:37 UTC 

[nft PATCH 1/2] doc: nft.8: Describe nftables transactions and their limitations
 2026-09-17 17:31 UTC  (2+ messages)
` [nft PATCH 2/2] doc: nft.8: Document caveats when mixing clients

[PATCH nf v2 0/6] netfilter: harden conntrack vs ingress pipeline rewrites
 2026-09-17 13:09 UTC  (7+ messages)
` [PATCH v2 nf 1/6] netfilter: nf_conntrack: validate skb->_nfct and packet headers
` [PATCH v2 nf 2/6] netfilter: nf_conntrack: refactor helper call logic in nf_confirm()
` [PATCH v2 nf 3/6] netfilter: nf_conntrack: verify L4 protocol before calling helper
` [PATCH v2 nf 4/6] netfilter: conntrack: replace open-coded helper invocation
` [PATCH v2 nf 5/6] netfilter: nf_conntrack: harden helper invocation with tuple revalidation
` [PATCH v2 nf 6/6] netfilter: nft_ct: validate timeout object protocol

[PATCH nf-next] netfilter: nfnetlink_queue: hash queue instance by portid too
 2026-09-17  9:30 UTC  (4+ messages)

[PATCH net] selftests: net: update netfilter netlink config
 2026-09-17  9:04 UTC  (4+ messages)

[PATCH nf-next v3 0/6] net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload
 2026-09-17  8:29 UTC  (7+ messages)
` [PATCH nf-next v3 1/6] net: netfilter: nf_flow_table: recognize IPv4/IPv6 in tunnel proto matching
` [PATCH nf-next v3 2/6] net: netfilter: nf_flow_table: set inner protocol when popping tunnel header
` [PATCH nf-next v3 3/6] net: netfilter: nf_flow_table: populate tunnel tuple regardless of inner protocol
` [PATCH nf-next v3 4/6] net: netfilter: add encap_proto to flow_offload_tunnel
` [PATCH nf-next v3 5/6] net: netfilter: nf_flow_table: refactor MTU check for tunnel offload
` [PATCH nf-next v3 6/6] net: netfilter: nf_flow_table: unify tunnel push for IPv4 and IPv6

[PATCH nf-next v2 0/6] net: netfilter: preliminary support for IPv4 over IPv6 and SIT flowtable offload
 2026-09-17  8:26 UTC  (4+ messages)
` [PATCH nf-next v2 6/6] net: netfilter: nf_flow_table: unify tunnel push for IPv4 and IPv6

[PATCH nf-next v5 0/3] flow offload teardown when layer 2 roaming
 2026-09-17  7:27 UTC  (6+ messages)
` [PATCH nf-next v5 1/3] netfilter: flow: Add bridge_vid member
` [PATCH nf-next v5 2/3] netfilter: flowtable: teardown direct xmit flows when the fdb entry moves
` [PATCH nf-next v5 3/3] selftests: netfilter: nft_flowtable.sh: roam a host between two bridge ports

[PATCH net v2 0/2] ipvs: avoid stack overflow from recursive connection expiration
 2026-09-17  3:02 UTC  (3+ messages)
` [PATCH net v2 1/2] "
` [PATCH net v2 2/2] ipvs: reject FTP control ports as data ports

[PATCH net v2] net: remove WARN_ON_ONCE() from the dev_fill_forward_path() loop check
 2026-09-17  1:55 UTC  (3+ messages)

[PATCH nf,v2] netfilter: nfnetlink_queue: hash queue instance by portid too
 2026-09-16 22:15 UTC  (2+ messages)

[PATCH v3 nf-next 0/3] ipvs: add per-service secure_tcp
 2026-09-16 20:50 UTC  (4+ messages)
` [PATCH v3 nf-next 1/3] ipvs: add flags for per-service secure TCP state table
` [PATCH v3 nf-next 2/3] ipvs: tcp: enable per-connection secure_tcp in state machine
` [PATCH v3 nf-next 3/3] selftests: netfilter: ipvs: add per-service secure_tcp test

network flow offloading broken in 6.18.45+
 2026-09-16 19:28 UTC  (7+ messages)

[PATCH] netfilter: conntrack: fix nf_conntrack_expect_max default value in documentation
 2026-09-16 18:22 UTC  (2+ messages)

[PATCH nf-next v5 0/6] ipset: replace internal hash table with rhashtable
 2026-09-16 17:53 UTC  (11+ messages)
` [PATCH nf-next v5 1/6] rhashtable: Add rhashtable_flush_and_free helper
` [PATCH nf-next v5 2/6] netfilter: ipset: add rhashtable boilerplate stubs
` [PATCH nf-next v5 3/6] netfilter: ipset: add rhltable "
` [PATCH nf-next v5 4/6] netfilter: ipset: replace internal hash table with rhashtable
` [PATCH nf-next v5 5/6] netfilter: ipset: re-add forceadd support
` [PATCH nf-next v5 6/6] netfilter: ipset: also report mem size for cidr storage to userspace

[PATCH net] netfilter: flowtable: Saturate 16-bit flow_tuple->mtu
 2026-09-16 15:01 UTC  (3+ messages)

[PATCH] netfilter: nf_dup_netdev: Fix net_device reference leak in nft_fwd_dup_netdev_offload()
 2026-09-16  8:41 UTC  (2+ messages)

[PATCH nft] tests: shell: add packetpath test for nat on loopback
 2026-09-16  7:18 UTC 

[PATCH 0/4] ipv4: start using dst_dev_rcu()
 2026-09-16  1:52 UTC  (6+ messages)
` [PATCH v6.1.y 4/4] "

[PATCH RFC v3 00/13] sysctl: add module aliases
 2026-09-16  0:40 UTC  (9+ messages)

[PATCH v2 0/4] ipvs: add per-service secure_tcp
 2026-09-15 22:41 UTC  (3+ messages)
` [PATCH v2 1/4] ipvs: add flags for per-service secure TCP state table
` [PATCH v2 2/4] ipvs: stamp per-service secure_tcp on connections

[syzbot] [netfilter?] WARNING in nf_flow_table_extend_ct_timeout
 2026-09-15 22:34 UTC 

[PATCH 0/4] ipvs: add per-service secure_tcp
 2026-09-15 19:39 UTC  (6+ messages)
` [PATCH 1/4] ipvs: add flags for per-service secure TCP state table
` [PATCH 2/4] ipvs: stamp per-service secure_tcp on new connections
` [PATCH 3/4] ipvs: tcp: enable per-connection secure_tcp in state machine
` [PATCH 4/4] selftests: netfilter: ipvs: add per-service secure_tcp test

[syzbot] [netfilter?] BUG: workqueue lockup in batadv_tt_purge
 2026-09-15 15:10 UTC 

[PATCH net-next 0/8] Netfilter updates for net-next
 2026-09-15  0:20 UTC  (10+ messages)
` [PATCH net-next 1/8] netfilter: seqadj: do not take ct lock if seqadj is NULL
` [PATCH net-next 2/8] netfilter: x_tables: use GFP_KERNEL_ACCOUNT in match/target
` [PATCH net-next 3/8] netfilter: nfnetlink: use GFP_KERNEL_ACCOUNT
` [PATCH net-next 4/8] netfilter: nf_tables: "
` [PATCH net-next 5/8] netfilter: synproxy: "
` [PATCH net-next 6/8] netfilter: sysctl: "
` [PATCH net-next 7/8] netfilter: nat: "
` [PATCH net-next 8/8] netfilter: conncount: "

[PATCH net,v2 0/4 RESEND] Netfilter fixes for net
 2026-09-15  0:10 UTC  (6+ messages)
` [PATCH net 1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup
` [PATCH net 2/4] netfilter: nf_tables: fix device name and prefix match in hook lookup
` [PATCH net 3/4] netfilter: nf_nat: unregister and release hooks on error
` [PATCH net 4/4] netfilter: flowtable: hold reference on ct until flow is released

[PATCH nft 1/2] expression: assert if clone interface is undefine
 2026-09-14 19:28 UTC  (2+ messages)
` [PATCH nft 2/2] remove EXPR_SET_ELEM, replace it by struct set_elem

[PATCH nf 1/6] netfilter: nf_conntrack: validate skb->_nfct and packet headers
 2026-09-14 16:58 UTC  (6+ messages)
` [PATCH nf 2/6] netfilter: nf_conntrack: refactor helper call logic in nf_confirm()
` [PATCH nf 3/6] netfilter: nf_conntrack: verify L4 protocol before calling helper
` [PATCH nf 4/6] netfilter: conntrack: replace open-coded helper invocation
` [PATCH nf 5/6] netfilter: nf_conntrack: harden helper invocation with tuple revalidation
` [PATCH nf 6/6] netfilter: nft_ct: validate timeout object protocol

[PATCH nf,v2] net: update dev_fill_forward_path() to handle mac80211 special case
 2026-09-14 12:33 UTC 

[PATCH nf] net: update dev_fill_forward_path() to handle mac80211 special case
 2026-09-14 12:24 UTC 

[PATCH nf v3] netfilter: nf_tables: skip expired catchall elements on insert and delete
 2026-09-14 11:51 UTC 

[PATCH nft] tests: shell: add packetpath test for timeout policy overrides
 2026-09-14  8:33 UTC 

[PATCH nf] netfilter: flowtable: advertise the vlan match in used_keys
 2026-09-13 10:42 UTC  (4+ messages)
` [PATCH nf v2 0/2] netfilter: flowtable: correct and advertise the vlan match
  ` [PATCH nf v2 1/2] netfilter: flowtable: fill the vlan key from the outermost tag only
  ` [PATCH nf v2 2/2] netfilter: flowtable: advertise the vlan match in used_keys

[PATCH nf 0/1] ipvs: avoid stack overflow from recursive connection expiration
 2026-09-13  7:13 UTC  (4+ messages)
` [PATCH nf 1/1] "

[PATCH net] net: reject a forward path that loops back to the tunnel
 2026-09-12  7:42 UTC  (4+ messages)

[PATCH net] netfilter: ctnetlink: fix suspicious RCU usage in expect_iter_name
 2026-09-12  1:10 UTC 

[syzbot] [netfilter?] WARNING: suspicious RCU usage in expect_iter_name
 2026-09-12  0:57 UTC 

[PATCH net-next 0/7] netlink: specs: conntrack: minor spec fixes
 2026-09-12  0:00 UTC  (2+ messages)

[PATCH nft] src: release scope symbols by reference count
 2026-09-11 20:38 UTC  (2+ messages)

[PATCH 01/13 net-next] net: ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack
 2026-09-11 18:59 UTC  (7+ messages)

[PATCH nft] tests: shell: drop metainfo from the json dump comparison
 2026-09-11 14:59 UTC 

[PATCH nft v3] evaluate: reject negative values for unsigned datatypes
 2026-09-11 14:59 UTC 

[PATCH nf-next] netfilter: conntrack: prevent nf_conntrack_buckets race condition
 2026-09-11 14:42 UTC 

[PATCH nf-next 0/4] netfilter: offload a TCP flow whose reply is never seen
 2026-09-11 14:16 UTC  (5+ messages)

[PATCH nf-next v4 01/13] rhashtable: add rhashtable_flush_and_free helper
 2026-09-11 12:54 UTC  (7+ messages)

[PATCH 1/4] lib/ts_bm: advance state->offset past the reported match
 2026-09-11 11:55 UTC  (4+ messages)

[PATCH v2 nf] ipvs: revalidate ihl before icmp_send
 2026-09-11 11:43 UTC 

[PATCH net,v2 0/4] Netfilter fixes for net
 2026-09-11 11:21 UTC  (5+ messages)
` [PATCH net 1/4] netfilter: nft_nat: fully initialise new_addr in netmap setup
` [PATCH net 2/4] netfilter: nf_tables: fix device name and prefix match in hook lookup
` [PATCH net 3/4] netfilter: nf_nat: unregister and release hooks on error
` [PATCH net 4/4] netfilter: flowtable: hold reference on ct until flow is released

[PATCH nf v2] netfilter: nf_tables: skip expired catchall elements on insert and delete
 2026-09-11 11:14 UTC  (2+ messages)

[PATCH net 4/7] ipvs: revalidate ihl before icmp_send
 2026-09-11  9:56 UTC  (3+ messages)

[PATCH nf,v2] netfilter: flowtable: hold reference on ct until flow is released
 2026-09-11  9:16 UTC 

[PATCH] selftests: netfilter: fix nft_audit.sh auditd detection
 2026-09-11  3:56 UTC 

[PATCH net 0/7] Netfilter/IPVS fixes for net
 2026-09-11  0:49 UTC  (2+ messages)

[PATCH net 7/7] netfilter: hold reference on module during netlink dump
 2026-09-11  0:46 UTC  (2+ messages)

[PATCH net 6/7] netfilter: xt_IDLETIMER: allocate timer with kzalloc()
 2026-09-11  0:46 UTC  (2+ messages)

[PATCH net 3/7] netfilter: nf_nat: unregister and release hooks on error
 2026-09-11  0:46 UTC  (2+ messages)

[BUG] WARNING in dev_fill_forward_path
 2026-09-10 21:51 UTC 

[PATCH] netfilter: nft_synproxy: use the family-aware checksum helper
 2026-09-10 20:02 UTC 


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox