messages from 2026-09-27 22:34:47 to 2026-10-05 13:04:33 UTC [more...]
[PATCH net-next 00/11] Netfilter updates for net-next
2026-10-05 13:04 UTC (15+ messages)
` [PATCH net-next 01/11] netfilter: synproxy: fix reset of ct seqadj when reopening a connection
` [PATCH net-next 04/11] netfilter: fix several typos in comments
` [PATCH net-next 05/11] netfilter: conntrack: Untangle insert_failed counter from others
` [PATCH net-next 06/11] netfilter: conntrack: Untangle drop and invalid counters
` [PATCH net-next 07/11] net/sched: act_ct: set net pointer before publishing flowtable
` [PATCH net-next 08/11] netfilter: flowtable: check namespace before iterating flows
` [PATCH net-next 09/11] netfilter: nfnetlink: Fix for interrupted hook dumps
` [PATCH net-next 10/11] netfilter: ctnetlink: fix inverted IPv6 address match in dump filter
` [PATCH net-next 11/11] netfilter: conntrack: make filtering by zone discoverable
[PATCH nf-next] netfilter: nf_nat: replace u_int16_t with u16
2026-10-05 12:09 UTC (2+ messages)
hardware flows are left behind when a flowtable is deleted (nf_tables unbinds the offload block at commit time)
2026-10-05 11:48 UTC
[PATCH nf] netfilter: flowtable: set on NF_FLOW_HW once flow has been offloaded
2026-10-04 22:17 UTC
[PATCH nf v2 0/2] netfilter: preserve bridge egress VLAN tags
2026-10-04 21:42 UTC (5+ messages)
` [PATCH nf v2 1/2] netfilter: br_netfilter: restore VLAN tag on refragmented IPv6 packets
` [PATCH nf v2 2/2] netfilter: br_netfilter: clear stale VLAN tag on refragmented packets
[nft PATCH v2] Fix for warnings when compiling for 32bit arch
2026-10-04 20:29 UTC (2+ messages)
[PATCH libnftnl] set: Check array boundary when parsing NFTA_SET_DESC_CONCAT
2026-10-04 19:59 UTC
[PATCH nf] netfilter: nft_synproxy: only handle pure SYN and ACK packets
2026-10-04 19:13 UTC (2+ messages)
[PATCH nf v2 0/2] netfilter: flowtable: correct and advertise the vlan match
2026-10-04 17:24 UTC (2+ messages)
[PATCH nf-next v3 0/3] netfilter: flowtable: carry a priority into the offload
2026-10-04 17:16 UTC (4+ messages)
` [PATCH nf-next v3 1/3] net/mlx5e: Ignore FLOW_ACTION_PRIORITY on flowtable offload
` [PATCH nf-next v3 2/3] netfilter: flowtable: carry a priority into the offload
` [PATCH nf-next v3 3/3] selftests: netfilter: nft_flowtable.sh: check the priority a flow carries
[PATCH nf-next v2 0/4] netfilter: offload a TCP flow whose reply is never seen
2026-10-04 17:16 UTC (5+ messages)
` [PATCH nf-next v2 1/4] netfilter: conntrack: pick up a TCP flow whose SYN was never answered
` [PATCH nf-next v2 2/4] netfilter: flowtable: promote a flow offloaded in one direction only
` [PATCH nf-next v2 3/4] netfilter: nft_flow_offload: offload a TCP flow that has no reply
` [PATCH nf-next v2 4/4] selftests: netfilter: cover a TCP flow whose reply is never seen
[PATCH nf-next 0/3] netfilter: flowtable: update upper device stats in the fast path
2026-10-04 17:16 UTC (4+ messages)
` [PATCH nf-next 1/3] 8021q: add vlan_dev_sw_netstats_rx_add() and vlan_dev_sw_netstats_tx_add()
` [PATCH nf-next 2/3] netfilter: flowtable: update upper device stats in the fast path
` [PATCH nf-next 3/3] selftests: netfilter: nft_flowtable.sh: check upper device counters
[PATCH nf-next v6 0/2] netfilter: flowtable: tear down bridged flows on layer 2 roaming
2026-10-04 17:16 UTC (3+ messages)
` [PATCH nf-next v6 1/2] netfilter: flowtable: tear down direct xmit flows when the fdb entry moves
` [PATCH nf-next v6 2/2] selftests: netfilter: nft_flowtable.sh: roam a host between two bridge ports
[PATCH 1/2 nf-next] netfilter: nft_exthdr: remove redundant op parsing in tcp_set_init
2026-10-04 1:41 UTC (2+ messages)
` [PATCH 2/2 nf-next] netfilter: nft_exthdr: avoid 60 bytes stack buffer in TCP option mangling
[PATCH net v6 0/2] net: prevent partial checksums from modifying network headers
2026-10-03 19:10 UTC (10+ messages)
` [PATCH net v6 1/2] net: validate virtio checksum start after network header
[nft PATCH 1/2] doc: nft.8: Describe nftables transactions and their limitations
2026-10-03 11:10 UTC (3+ messages)
` [nft PATCH 2/2] doc: nft.8: Document caveats when mixing clients
[PATCH nf] ipvs: do not create conns from packets with port 0
2026-10-03 9:50 UTC
[PATCH nf 0/2] ipvs: keep templates and cport 0 conns away from packet lookups
2026-10-02 23:04 UTC (3+ messages)
[PATCH 6.6 6.1 1/2] netfilter: nf_tables: Tolerate chains with no remaining hooks
2026-10-02 21:44 UTC (7+ messages)
` [PATCH 6.1] netfilter: nf_tables: fix UAF in nf_tables_netdev_event walker
` [PATCH 6.1 1/2] netfilter: nf_tables: allow to create netdev chain without device
` [PATCH 6.1 2/2] netfilter: nf_tables: support for adding new devices to an existing netdev chain
[syzbot] Monthly netfilter report (Oct 2026)
2026-10-02 20:33 UTC
[PATCH nf-next] netfilter: nfnetlink_log: collapse both dev log blocks
2026-10-02 17:38 UTC (2+ messages)
[PATCH net] netfilter: conntrack: avoid recursive master destruction
2026-10-02 17:35 UTC (9+ messages)
` [PATCH v2 net] netfilter: conntrack: reject nested ctnetlink master chains
[iptables PATCH 1/3] extensions: libxt_conntrack: Fix inverted ctstate translation
2026-10-02 12:49 UTC (3+ messages)
` [iptables PATCH 2/3] extensions: libxt_conntrack: Fix for ignored ctstates in translation
` [iptables PATCH 3/3] xshared: fix crash when -4/-6 follows a restore command
[PATCH nf] netfilter: flowtable: use the vlan id, not the full tci, in the tuple key
2026-10-02 8:42 UTC
[PATCH net] netfilter: nf_conntrack_reasm: avoid truncating header offset
2026-10-02 7:42 UTC (4+ messages)
[PATCH nf 0/2] ipvs: fix OOB write when NATing ICMPv6 errors quoting non-first fragments
2026-10-01 16:10 UTC (5+ messages)
[PATCH net 0/2] netfilter: nf_conntrack_h323: fixes for NAT bypass and ASN.1 decode
2026-10-01 15:58 UTC (7+ messages)
[PATCH nf] netfilter: br_netfilter: restore VLAN tag on refragmented IPv6 packets
2026-10-01 12:19 UTC (6+ messages)
[PATCH nf-next 0/2] netfilter: do not assume skb->sk is inet sk
2026-10-01 12:06 UTC (3+ messages)
` [PATCH nf-next 1/2] netfilter: add nf_skb_sk helper and use it
` [PATCH nf-next 2/2] netfilter: add nf_sk_to_full_sk "
[PATCH net,v2 00/10] Netfilter/IPVS fixes for net
2026-10-01 10:20 UTC (13+ messages)
` [PATCH net 01/10] netfilter: ipset: do not update comments from kernel-side adds
` [PATCH net 02/10] netfilter: nft_flow_offload: drop flowtable reference on init error path
` [PATCH net 03/10] ipvs: fix missing counter decrement in lblc
` [PATCH net 04/10] ipvs: bound LBLCR and LBLC cache growth
` [PATCH net 05/10] ipvs: do not create invisible templates
` [PATCH net 06/10] ipvs: filter some flags received in the backup server
` [PATCH net 07/10] netfilter: nft_set_rbtree: skip transaction elements during GC
` [PATCH net 08/10] netfilter: bpf: reject invalid NAT manipulation types
` [PATCH net 09/10] netfilter: flowtable: generalize pending status bit
` [PATCH net 10/10] netfilter: flowtable: restore ieee80211 forward path
[PATCH nft] doc: add MPTCP subtypes documentation to man page
2026-10-01 8:58 UTC (3+ messages)
[PATCH nf-next v2] netfilter: ip6t_NPT: ensure skb is writable before header modification
2026-09-30 20:54 UTC
[PATCH net] netfilter: ip6t_NPT: ensure skb is writable before header modification
2026-09-30 20:49 UTC (2+ messages)
Netfilter: match "tcp option" with the same type present multiple times
2026-09-30 18:33 UTC (18+ messages)
[PATCH net] ipvs: fix protocol data lifetime during namespace teardown
2026-09-30 17:21 UTC (2+ messages)
[PATCH net] ipvs: prevent LBLCR destination leak after entry expiry
2026-09-30 15:38 UTC (3+ messages)
[PATCH] netfilter: ebtables: ebt_802_3: drop short frames before the match reads LLC
2026-09-30 14:30 UTC (4+ messages)
[PATCH 01/16 net-next v3] ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack
2026-09-30 13:52 UTC (2+ messages)
` [PATCH 12/16 net-next v3] netfilter: ipv4: guard ip_route_me_harder() with CONFIG_IPV4
[PATCH nf-next v5 0/4] netfilter: conntrack: shared port parser for helpers
2026-09-30 9:57 UTC (7+ messages)
` [PATCH nf-next v5 1/4] netfilter: conntrack: add shared uint and port parsers "
` [PATCH nf-next v5 2/4] netfilter: nf_conntrack_irc: use nf_ct_helper_parse_port()
` [PATCH nf-next v5 3/4] netfilter: nf_conntrack_amanda: "
` [PATCH nf-next v5 4/4] netfilter: nf_conntrack_sip: use shared helper parsers
[PATCH net-next 12/12] net: bridge: fdb: avoid VLAN lookups in unicast forwarding
2026-09-30 7:14 UTC
[PATCH net v4] net: cap skb->queue_mapping when the tx queue is picked
2026-09-30 1:00 UTC (5+ messages)
[PATCH nf 2/2] ipvs: skip cport 0 connections in ip_vs_conn_out_get()
2026-09-29 18:16 UTC (3+ messages)
[PATCH nf 1/2] ipvs: validate cport in received sync records
2026-09-29 17:47 UTC (3+ messages)
[PATCH nf v5 2/3] ipvs: avoid stack overflow from recursive connection expiration
2026-09-29 17:05 UTC (2+ messages)
[PATCH nf v5 1/3] ipvs: wait the running timer cb on conn deletion
2026-09-29 17:05 UTC (2+ messages)
[PATCH nf 2/2] ipv6: update *offset for non-first fragments in ipv6_find_hdr()
2026-09-29 15:57 UTC (2+ messages)
[PATCH nf 1/2] ipvs: avoid out-of-bounds write in ip_vs_nat_icmp_v6
2026-09-29 15:57 UTC (2+ messages)
[PATCH nf-next] netfilter: nf_tables: switch chain_types array to rcu
2026-09-29 14:59 UTC
[PATCH net 00/11] Netfilter/IPVS fixes for net
2026-09-29 14:36 UTC (4+ messages)
[PATCH nf-next] netfilter: conntrack: fix unlikely UaF in gc worker
2026-09-29 13:09 UTC
[PATCH nf v5 0/1] netfilter: nf_dup: reject TEE and IPv4/IPv6/netdev nft dup in userns
2026-09-29 12:58 UTC (2+ messages)
` [PATCH nf v5 1/1] "
[PATCH nf v2 0/2] ipvs: read conn fields during sync atomically
2026-09-29 11:34 UTC (3+ messages)
` [PATCH nf v2 1/2] ipvs: update flags and seqs in backup server under lock
` [PATCH nf v2 2/2] ipvs: fix buffer overflow when sending sync messages
[PATCH net 02/11] ipvs: fix buffer overflow when sending sync messages
2026-09-29 10:27 UTC (7+ messages)
[BUG] netfilter: IPv6 conntrack fragment reassembly truncates header offset
2026-09-29 9:14 UTC (2+ messages)
[BUG] netfilter: IPv6 conntrack fragment reassembly truncates header offset
2026-09-29 9:07 UTC (3+ messages)
[PATCH nf] ipvs: fix buffer overflow when sending sync messages
2026-09-29 4:24 UTC (2+ messages)
[PATCH net 07/11] ipvs: filter some flags received in the backup server
2026-09-29 4:17 UTC (3+ messages)
[PATCH net 10/11] netfilter: flowtable: generalize pending status bit
2026-09-28 23:55 UTC (2+ messages)
[PATCH net 08/11] netfilter: nft_set_rbtree: skip transaction elements during GC
2026-09-28 23:55 UTC (2+ messages)
[PATCH net 03/11] netfilter: nft_flow_offload: drop flowtable reference on init error path
2026-09-28 23:55 UTC (2+ messages)
[PATCH 01/16 net-next v2] ipv4: introduce CONFIG_IPV4 to decouple the IPv4 stack
2026-09-28 19:30 UTC (2+ messages)
` [PATCH 12/16 net-next v2] netfilter: ipv4: guard ip_route_me_harder() with CONFIG_IPV4
[PATCH nf-next v2 1/2] netfilter: nf_queue: limit the hook drop flush to the unregistered hook point
2026-09-28 18:58 UTC (2+ messages)
` [PATCH nf-next v2 2/2] selftests: netfilter: nft_queue: check the scope of the hook drop flush
[PATCH nf-next v4 2/4] netfilter: nf_conntrack_irc: use nf_ct_helper_parse_port()
2026-09-28 15:23 UTC (3+ messages)
[PATCH nf-next v4 1/4] netfilter: conntrack: add shared uint and port parsers for helpers
2026-09-28 14:18 UTC (3+ messages)
nf_queue: hook changes drop or re-queue packets waiting in any nfqueue
2026-09-28 14:11 UTC (3+ messages)
` [PATCH nf-next 1/2] netfilter: nf_queue: limit the hook drop flush to the unregistered hook point
[PATCH nf-next v4 4/4] netfilter: nf_conntrack_sip: use shared helper parsers
2026-09-28 13:13 UTC (3+ messages)
[PATCH nf-next v4 3/4] netfilter: nf_conntrack_amanda: use nf_ct_helper_parse_port()
2026-09-28 11:58 UTC (3+ messages)
[PATCH net] netfilter: nf_tables: serialize offload stats with callback unbind
2026-09-28 4:28 UTC (3+ messages)
page: next (older) | prev (newer) | latest
- recent:[subjects (threaded)|topics (new)|topics (active)]
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox