netfilter.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
- recent:[subjects (threaded)|topics (new)|topics (active)]
2025-11-18 11:45 Re: Changes in iptables-legacy 2+ messages
2025-11-17 12:49 RE: Packet misrouted 2+ messages
2025-11-12 15:02 RE: conntrackd user-space helpers for multicast/broadcast 5+ messages
2025-11-11 19:07 The correct forum
2025-11-06 23:15 Re: [PROPOSAL] New wiki page: Simple rule management with JSON 2+ messages
2025-11-06 13:08 Re: coexistence between nftables and iptables ? 3+ messages
2025-10-27 22:25 Re: Nftables ct count over 2 counter continues to trigger with only 1 connection 6+ messages
2025-10-11 17:26 Re: Is there a way to extend the timeout of elements in an nftables set? 3+ messages
2025-10-11 13:57 Re : Re: Rule with double check ignore with 802.1Q packet 3+ messages
2025-10-08 21:01 Re: nf-ct-list and nf-exp-delete 5+ messages
2025-10-07  8:43 Re: Slow "nft list counters" 3+ messages
2025-10-06 10:03 Re: nft for bridge. 6+ messages
2025-09-30 19:13 Re: Confirming conntrack behavior on environments with multiple network namespaces 6+ messages
2025-09-30 10:58 Re: nftables: conditionally enabling rules? 2+ messages
2025-09-27 19:58 Re: list elements of set 8+ messages
2025-09-26 12:03 Re: redirect/dnat to localhost address in prerouting chain? 4+ messages
2025-09-24 21:45 Re: some questions on nft 3+ messages
2025-09-23 16:44 Re: "nft reset counters" bug on 32-bit systems 4+ messages
2025-09-19  6:37 netdev egress 'log' + tcpdump : capturing 'Bogus IPv4 version (3, must be 4)' packets
2025-09-15  9:11 Re: Stateless NAT in nftables with maps for performance 6+ messages
2025-09-09  3:43 Vim script highlighter, beta; 850 keywords; 2,400 states
2025-09-01 23:05 [ANNOUNCE] nftables 1.0.6.1 (stable) release
2025-08-30  9:56 Re: Segmentation fault when adding a simple rule 2+ messages
2025-08-28 18:20 [NATHELPER] Dealing CGN Public 1:1 mode from ISP
2025-08-27 21:32 [ANNOUNCE] nftables 1.1.5 release
2025-08-25 11:39 Re: nft error Could not process rule: No buffer space available 7+ messages
2025-08-25  9:35 Re: repeated 'add chain'/'delete chain' 5x and ... 2+ messages
2025-08-22  1:58 Hardware flowtable offload from multiple tables?
2025-08-21 17:41 Re: Implicit add conflicts with declarative add 2+ messages
2025-08-18 16:11 Re: Query on nftables DNAT for localhost-to-localhost traffic in IPv6 or without route_localnet 6+ messages
2025-08-17 21:54 Re: nftables 1.0.6.y stable branch updates (strike 2) 2+ messages
2025-08-17 21:48 Re: 'nft' crashes. 2+ messages
2025-08-06 16:39 Re: [ANNOUNCE] libnftnl 1.3.0 release 3+ messages
2025-08-06 12:16 [ANNOUNCE] nftables 1.1.4 release
2025-08-01  0:37 Re: another netfilter-initiated martian source 2+ messages
2025-07-27  3:00 zoombinis
2025-07-14 15:00 Re: TCPOPTSTROP can be repalced with undocumented "reset tcp option opt" 2+ messages
2025-07-14 13:30 Re: [PATCH nft] doc: expand on gc-interval, size and a few other set/map keywords 3+ messages
2025-07-09 15:20 Let me write your new guest post
2025-06-28 12:30 Re: Element-Level Logging Support in nftables Sets 2+ messages
2025-06-22 13:19 Re: order of netfilter hooks and check for martian source 16+ messages
2025-06-14 15:28 CPU usage problem for offloaded flows with mlx5
2025-06-13  8:42 Re: Status of native NAT64/NAT46 in Netfilter? 11+ messages
2025-06-04 22:20 [ANNOUNCE] knft testing/fuzzer utility for nftables
2025-06-01  3:45 Re: Command Line Interface Usage and Documentation Query 2+ messages
2025-05-27 23:40 Re: Issue with delayed segments despite TCP_NODELAY 3+ messages
2025-05-25 17:24 Re: Log ARP headers 14+ messages
2025-05-25  7:47 Re: ulogd2, sqlite3 and negative TCP Seq numbers 5+ messages
2025-05-21 16:15 documentation/explaination on the syntax of the set_elem data arrangement.
2025-05-19 22:20 [ANNOUNCE] ulogd 2.0.9 release
2025-05-17 14:08 [ANNOUNCE] ipset 7.24 released
2025-05-13  5:10 Re: Repeated SYN+ACK count 3+ messages
2025-04-29 18:46 Re: send all traffic to a specific address 2+ messages
2025-04-26 21:56 Vmap lookup transiently fails during atomic ruleset reload under load, leading to rule bypass
2025-04-26  9:40 Re: nftables RP filter and loopback 14+ messages
2025-04-22 12:57 UNSUBSCRIBE 2+ messages
2025-04-22  1:59 Re: How to Achieve Functionality Equivalent to iptables -m owner --socket-exist in nft? 7+ messages
2025-04-19  6:50 Re: Can the PCP field be set in the netdev table? 7+ messages
2025-04-19  0:13 subscribe
2025-04-18  0:54 Re: Replace flow offload by flow add in wiki 2+ messages
2025-04-16 10:02 Re: [ANNOUNCE] nftables 1.1.2 release 10+ messages
2025-04-15 14:10 Are Palo Alto and Check Point Firewalls using netfilter iptables?
2025-04-14 17:39 [ANNOUNCE] libnftnl 1.2.9 release
2025-04-04  5:15 Re: Nftables v6 address not matched properly in nftable set 6+ messages
2025-03-31 17:00 Re: Packets not traversing postrouting chain 3+ messages
2025-03-14 16:33 Can you look at this blog article pitch I have for you?
2025-03-14  6:12 Re: Dynamically appending addresses to a named set 8+ messages
2025-03-13 23:23 Re: netfilter expected behavior for established connections 12+ messages
2025-03-11 18:39 Re: connection tracking fails to update udp timer
2025-03-11 14:48 Re: connection tracking fails to update udp timer 2+ messages
2025-03-08 10:33 Re: Translation for iptables raw rules that targert rtsp / Conntrack helper, 2+ messages
2025-03-08  9:37 subscribe
2025-03-08  9:37 subscribe
2025-03-07 18:22 tcp_hdr_kind_and_field window COUNT vs. tcp_hdr_option_type window LENGTH 2+ messages
2025-03-06  2:46 Re: nft reset element crashes with error BUG: unhandled op 8 7+ messages
2025-03-03 19:31 Re: snat and Port Numbers 2+ messages
2025-03-02 12:01 Re: named counters vs flush ruleset 5+ messages
2025-02-28 17:52 Re: Using netfilter to intercept packets written to an ipvtap device 2+ messages
2025-02-28 14:42 [SOLVED] Generic map, also with L4 protocol 2+ messages
2025-02-24 16:32 Re: What is *supposed* to happen with automated nftables accept rules? 4+ messages
2025-02-21  1:40 Re: NAT and ICMP 3+ messages
2025-02-20 11:32 Re: Cannot browse SQL files in ulog2 git 3+ messages
2025-02-19 22:43 ICMP Raw Payload Expressions
2025-02-16 11:17 Re: Static bidirectional static NAT for duplicate IP devices using iptables 9+ messages
2025-02-09 22:45 Re: Raw Payload Expressions - out of bounds write? 14+ messages
2025-02-03 11:55 Re: Documentation regarding priorities possibly wrong - clarification / update appreciated 3+ messages
2025-02-02 16:47 Re: Netfilter not dropping packets as it should 7+ messages
2025-01-30 23:23 Re: Clarification of the procedure for filtering IP option fields 6+ messages
2025-01-28 12:29 Re: Raw payload expressions are mangled 4+ messages
2025-01-27 20:31 SNAT vs ip rule
2025-01-26  9:36 Re: nftables DNAT routes to wrong iface 4+ messages
2025-01-26  6:16 Re: DROP rule is ignored for multicast traffic, but only via Wireguard 2+ messages
2025-01-24 19:02 Re: aggressive firewalling via nftables 4+ messages
2025-01-20 10:43 nft includepath directory - directory on a separate partition / disk
2025-01-15 13:44 [ANNOUNCE] nftlb 1.1.0 release
2025-01-13 10:09 IPv6 source address randomization?
2025-01-12 19:30 Delay replying to SYN (or requires two SYN to react)
2025-01-11 13:03 Re: list sets 3+ messages
2025-01-04 20:50 Re: General questions about priorities - Clarification appreciated 2+ messages
2024-12-30 22:16 Re: expires larger than timeout causes error 9+ messages
2024-12-30 10:16 flowtable ipv4-via-ipv6 routing
2024-12-28  9:20 Re: nftables portmap map 6+ messages
2024-12-18 13:24 Re: nft table flags documentation 4+ messages
2024-12-16 19:00 [ANNOUNCE] ipset 7.23 released
2024-12-12 22:26 Re: Regression 1.0.9..1.1.1 in glob inclusion behaviour 5+ messages
2024-12-11 18:27 Re: conntrack-tools conntrack cli json output option? 2+ messages
2024-12-01 17:00 Re: Most optimal method to dump UDP conntrack entries 23+ messages
2024-11-30  6:03 an idea about flow tables
2024-11-28 19:16 Re: logging to a different place than kernel ring buffer 4+ messages
2024-11-27 13:02 Re: [DNAT] Port forwarding with Port range 2+ messages
2024-11-21  0:05 Re: Adding set elements 5+ messages
2024-11-20 21:49 Re: set with limit 5+ messages
2024-11-15 14:02 Re: rule insertion 3+ messages
2024-11-15  8:59 Re: Dropping of the end of a chain 10+ messages
2024-11-12 21:04 Re: ipset vs. nftables set 11+ messages
2024-11-12 20:10 Re: connection tracking state in rules 5+ messages
2024-11-12 18:28 iptables SYNPROXY small packet size transmission performance issue
2024-11-11 19:14 Re: connection tracking and kernel dropping packets 8+ messages
2024-11-08 14:58 [ANNOUNCE] iptables 1.8.11 release
2024-11-04 13:50 Re: Countering some types of SSH spoofing with NFTables 4+ messages
2024-10-31 14:45 Re: Unusual packet forwarding task 4+ messages
2024-10-31 12:28 Re: IPtables rate limiting question 10+ messages
2024-10-24 18:14 Re: location of conntrack rules 5+ messages
2024-10-19 20:46 Re: filesystem access to add/remove/view ip addresses 4+ messages
2024-10-14 10:09 [UPDATE] Renewing Netfilter coreteam PGP keys
2024-10-11  9:02 Re: VPN nftables 8+ messages
2024-10-10 21:19 Re: issues when trying to inspect payload > 250 bytes 3+ messages
2024-10-09 11:26 Re: Problem with ipv6 8+ messages
2024-10-08 20:21 Re: Unsuccessful adding policy to a regular chain 4+ messages
2024-10-05 18:28 Re: Allowing closed connections time to drain before logging packets 5+ messages
2024-10-02 22:57 [ANNOUNCE] nftables 1.1.1 release
2024-10-02 22:53 [ANNOUNCE] libnftnl 1.2.8 release
2024-10-02  8:50 How to count bytes?
2024-09-30  9:49 Re: Clarification on the functioning of "ct count" 2+ messages
2024-09-29 11:20 Clarification on the functioning of "ct count"
2024-09-25 13:04 unsubscribe
2024-09-25 12:18 [ANNOUNCE] libnetfilter_conntrack 1.1.0 release
2024-09-22 10:16 Re: Nomnclature - Roman 2+ messages
2024-09-12 10:29 Re: Wiki entry on Element timeouts in NFtables 5+ messages
2024-09-10 17:49 Re_School Contacts List 2024
2024-09-10 13:30 Re: Issue Setting meta broute 2+ messages
2024-09-04 10:53 Re: nftables are non-deterministic 2+ messages
2024-08-28 19:35 Re: Stateless NAT ICMP Payload Mismatch 3+ messages
2024-08-27 15:23 RE: Understanding output from "nft list" 12+ messages
2024-08-23 19:14 nftables' ulogd2 group "#" usage -- variable substitution possible?
2024-08-16 10:53 [ANNOUNCE] Security evaluation by ANSSI of nftables
2024-08-15 18:48 RE: Output port redirect going to loopback? 3+ messages
2024-08-11 14:43 correct nft v1.1.0 usage for flowtable h/w offload? `flags offload` &/or `devices=`
2024-08-06  5:13 Hardware Offloading Mellanox
2024-08-04 13:08 Can't set meta priority for some packets in netdev family!
2024-08-01 18:01 Re: libnftables way of deleting a rule 2+ messages
2024-07-29  7:23 Re: Unknown option "--to-ports" 7+ messages
2024-07-29  5:26 How do you set packet priority in the netdev table?
2024-07-28 18:59 How to set packet priority in the netdev table?
2024-07-23 12:19 Re: Sets update 18+ messages
2024-07-18 21:00 Re: syntax issues when reducing rules through grouping ? 2+ messages
2024-07-16 20:49 [ANNOUNCE] nftables 1.1.0 release
2024-07-15 12:58 [ANNOUNCE] libnftnl 1.2.7 release
2024-07-12  8:49 Re: Regarding ulogd_output_SYSLOG.so
2024-07-11 19:15 Re: nftables rule optimization - evaluating efficiency 8+ messages
2024-07-11  3:32 Transparent SNAT bridge with physdev module
2024-07-10  7:11 Re: Understanding and debugging conntrack source code 2+ messages
2024-07-05 16:18 Does Nftables nft_fib check fib only in the main routing table?
2024-06-28 14:08 Re: conntrackd: Trouble using multiple Accept addresses in kernel filter 3+ messages
2024-06-26 18:25 Re: nft not logging some layer 2 frames? 11+ messages
2024-06-21 14:58 subscribe
2024-06-17 16:42 Re: How to have a counter for vmap verdicts? 6+ messages
2024-06-17 14:18 bidge not working. Missing rules?
2024-06-14 19:33 Re: Writing own match module for modern ebtables. 3+ messages
2024-06-11  7:39 Re: Problem with migration from iptables+ipset to nftables 2+ messages
2024-06-05  7:23 [ANNOUNCE] ipset 7.22 released
2024-06-01 20:31 Re: nftables rule where IPv6 source and destination addr are the same? 2+ messages
2024-05-31 19:31 Re: Problems understanding nftables part 2 9+ messages
2024-05-31  9:35 Fwd: ebtables rule rewriten to nft 'set host' does not work
2024-05-30 20:47 Re: Cant get "tcp dport 22 @ih,0,32 0x5353482d" to work/match 4+ messages
2024-05-30 14:50 Re: ebtables rule rewriten to nft 'set host' does not work 4+ messages
2024-05-30 11:06 Fwd: ebtables rule rewriten to nft 'set host' does not work
2024-05-28 16:43 Problems understanding nftables
2024-05-28 12:59 [wiki] typo in Nftables families
2024-05-28 10:00 Re: connection refused from DNATted host (libvirt guests!) 2+ messages
2024-05-28  9:41 Using NAT engine information to apply fwmark to packet
2024-05-22  9:43 Re: Clash Resolve Counter Increasing 2+ messages
2024-05-14 12:34 Nftables rules for kernel threads (cifsd)
2024-05-09 13:15 Re: Sets nesting/reference? Complex concatenations in vmaps? 4+ messages
2024-05-06 21:53 Re: Kernel panic in nf_nat_setup_info, with re injected packet from libnfml 2+ messages
2024-05-02  9:52 Retrieve L2 header or MAR from packet
2024-05-01  0:46 Re: IPv4 NAT and lo, and iptables 3+ messages
2024-04-30 11:01 HW Offloading Mellanox ConnectX-6DX
2024-04-27 19:23 Re: [Thread split] nftables rule optimization - dropping invalid in ingress? 8+ messages
2024-04-25 15:30 Re: How to have a dynamic ingress device(s) list? 7+ messages
2024-04-25 14:14 RE: Drop to Docker bridge 2+ messages
2024-04-22 17:32 Re: DoS/DDoS protection for end nodes 15+ messages
2024-04-20 19:19 Re: Combining/compacting 2 rules into 1 19+ messages
2024-04-20 17:31 Re: Rewrite arp response with nft 2+ messages
2024-04-19 17:29 Re: How to measure/profile ruleset performance? 5+ messages
2024-04-15 13:20 Re: NFQUEUE usage and interaction with later chain rules 3+ messages
2024-04-13 14:01 Re: Using iptables and ipset to DROP a list of 2 million addresses 4+ messages
2024-04-12 16:36 Re: connlimit from wiki.nftables.org not working 7+ messages
2024-04-10 18:24 Re: Correct way of setting the TCP max segment sizes for IPv4 and IPv6? 7+ messages
2024-04-02 13:24 Re: nftables: How to match ICMPv6 subtype in a rule? 9+ messages

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).