Netfilter-Devel Archive mirror
 help / color / mirror / Atom feed
[PATCH 0/2] Forbid illegitimate binding via listen(2)
 2024-06-20  8:00 UTC  (7+ messages)
` [PATCH 1/2] landlock: Add hook on socket_listen()

[PATCH nf-next] selftests: netfilter: nft_queue.sh: add test for disappearing listener
 2024-06-19 20:31 UTC 

[PATCH net 0/5] Netfilter fixes for net
 2024-06-19 17:05 UTC  (6+ messages)
` [PATCH net 1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected()
` [PATCH net 2/5] seg6: fix parameter passing when calling NF_HOOK() in End.DX4 and End.DX6 behaviors
` [PATCH net 3/5] netfilter: move the sysctl nf_hooks_lwtunnel into the netfilter core
` [PATCH net 4/5] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
` [PATCH net 5/5] selftests: add selftest for the SRv6 End.DX6 "

[PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
 2024-06-19 16:46 UTC  (53+ messages)

[PATCH v2 0/7] Dynamic hook interface binding
 2024-06-19 15:59 UTC  (5+ messages)

[PATCH] conntrackd: helpers/rpc: Don't add expectation table entry for portmap port
 2024-06-19 13:08 UTC  (6+ messages)
` AW: "

[PATCH nft] src: add string preprocessor and use it for log prefix string
 2024-06-19 10:56 UTC 

[PATCH -stable,5.4] netfilter: nftables: exthdr: fix 4-byte stack OOB write
 2024-06-19 10:50 UTC  (2+ messages)

[PATCH v8 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage
 2024-06-19  7:16 UTC 

[syzbot] [netfilter?] net-next test error: WARNING: suspicious RCU usage in corrupted
 2024-06-19  0:11 UTC 

[PATCH nft] tests: py: drop redundant JSON outputs
 2024-06-18 15:38 UTC 

let nftables indicate incomplete dissections
 2024-06-18  9:31 UTC  (3+ messages)

[PATCH nf-next 00/11] netfilter: nf_tables: reduce transaction log memory usage
 2024-06-18  9:21 UTC  (7+ messages)
` [PATCH nf-next 01/11] netfilter: nf_tables: make struct nft_trans first member of derived subtypes
` [PATCH nf-next 02/11] netfilter: nf_tables: move bind list_head into relevant subtypes

[PATCH v7 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage
 2024-06-18  7:13 UTC 

[nf-next PATCH 0/2] netfilter: xt_recent: Allow for much larger hitcount values
 2024-06-17 17:38 UTC  (6+ messages)
` [nf-next PATCH 1/2] netfilter: xt_reent: Reduce size of struct recent_entry::nstamps
` [nf-next PATCH 2/2] netfilter: xt_recent: Largely lift restrictions on max hitcount value

[PATCH 0/1] ipset patch for nf
 2024-06-17  9:18 UTC  (2+ messages)
` [PATCH 1/1] netfilter: ipset: Fix suspicious rcu_dereference_protected()

[PATCH nft 0/2] nft include path updates
 2024-06-15  9:18 UTC  (3+ messages)
` [PATCH nft 1/2] libnftables: add base directory of -f/--filename to include path
` [PATCH nft 2/2] libnftables: search for default include path last

[nf-next PATCH v2 0/2] netfilter: xt_recent: Allow for larger hitcount values
 2024-06-14 15:58 UTC  (5+ messages)
` [nf-next PATCH v2 1/2] netfilter: xt_recent: Reduce size of struct recent_entry::nstamps
` [nf-next PATCH v2 2/2] netfilter: xt_recent: Lift restrictions on max hitcount value

[PATCH v5 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
 2024-06-14 15:40 UTC  (4+ messages)
` [PATCH v5 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
` [PATCH v5 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
` [PATCH v5 bpf-next 3/3] selftests/bpf: Add selftest for "

[PATCH v4 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
 2024-06-14 15:19 UTC  (8+ messages)
` [PATCH v4 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
` [PATCH v4 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc

[syzbot] [netfilter?] upstream test error: WARNING: suspicious RCU usage in _destroy_all_sets
 2024-06-14  8:20 UTC 

[syzbot] [netfilter?] net-next test error: WARNING: suspicious RCU usage in _destroy_all_sets
 2024-06-14  8:20 UTC 

[syzbot] [netfilter?] net test error: WARNING: suspicious RCU usage in _destroy_all_sets
 2024-06-14  8:20 UTC 

[linus:master] [netfilter] 4e7aaa6b82: WARNING:suspicious_RCU_usage
 2024-06-14  7:44 UTC 

[PATCH -stable,5.4] netfilter: nftables: exthdr: fix 4-byte stack OOB write
 2024-06-13 17:13 UTC 

[PATCH 4.19 159/213] netfilter: nf_tables: pass context to nft_set_destroy()
 2024-06-13 11:34 UTC  (40+ messages)
` [PATCH 4.19 160/213] netfilter: nftables: rename set element data activation/deactivation functions
` [PATCH 4.19 161/213] netfilter: nf_tables: drop map element references from preparation phase
` [PATCH 4.19 162/213] netfilter: nft_set_rbtree: allow loose matching of closing element in interval
` [PATCH 4.19 163/213] netfilter: nft_set_rbtree: Add missing expired checks
` [PATCH 4.19 164/213] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
` [PATCH 4.19 165/213] netfilter: nft_set_rbtree: fix null deref on element insertion
` [PATCH 4.19 166/213] netfilter: nft_set_rbtree: fix overlap expiration walk
` [PATCH 4.19 167/213] netfilter: nf_tables: dont skip expired elements during walk
` [PATCH 4.19 168/213] netfilter: nf_tables: GC transaction API to avoid race with control plane
` [PATCH 4.19 169/213] netfilter: nf_tables: adapt set backend to use GC transaction API
` [PATCH 4.19 170/213] netfilter: nf_tables: remove busy mark and gc batch API
` [PATCH 4.19 171/213] netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path
` [PATCH 4.19 172/213] netfilter: nf_tables: GC transaction race with netns dismantle
` [PATCH 4.19 173/213] netfilter: nf_tables: GC transaction race with abort path
` [PATCH 4.19 174/213] netfilter: nf_tables: defer gc run if previous batch is still pending
` [PATCH 4.19 175/213] netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction
` [PATCH 4.19 176/213] netfilter: nft_set_rbtree: use read spinlock to avoid datapath contention
` [PATCH 4.19 177/213] netfilter: nft_set_hash: try later when GC hits EAGAIN on iteration
` [PATCH 4.19 178/213] netfilter: nf_tables: fix memleak when more than 255 elements expired
` [PATCH 4.19 179/213] netfilter: nf_tables: unregister flowtable hooks on netns exit
` [PATCH 4.19 180/213] netfilter: nf_tables: double hook unregistration in netns path
` [PATCH 4.19 181/213] netfilter: nftables: update table flags from the commit phase
` [PATCH 4.19 182/213] netfilter: nf_tables: fix table flag updates
` [PATCH 4.19 183/213] netfilter: nf_tables: disable toggling dormant table state more than once
` [PATCH 4.19 184/213] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush (for 4.19)
` [PATCH 4.19 185/213] netfilter: nft_dynset: fix timeouts later than 23 days
` [PATCH 4.19 186/213] netfilter: nftables: exthdr: fix 4-byte stack OOB write
` [PATCH 4.19 187/213] netfilter: nft_dynset: report EOPNOTSUPP on missing set feature
` [PATCH 4.19 188/213] netfilter: nft_dynset: relax superfluous check on set updates
` [PATCH 4.19 189/213] netfilter: nf_tables: mark newset as dead on transaction abort
` [PATCH 4.19 190/213] netfilter: nf_tables: skip dead set elements in netlink dump
` [PATCH 4.19 191/213] netfilter: nf_tables: validate NFPROTO_* family
` [PATCH 4.19 192/213] netfilter: nft_set_rbtree: skip end interval element from gc
` [PATCH 4.19 193/213] netfilter: nf_tables: set dormant flag on hook register failure
` [PATCH 4.19 194/213] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate()
` [PATCH 4.19 195/213] netfilter: nf_tables: do not compare internal table flags on updates
` [PATCH 4.19 196/213] netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
` [PATCH 4.19 197/213] netfilter: nf_tables: reject new basechain after table flag update
` [PATCH 4.19 198/213] netfilter: nf_tables: discard table flag update with pending basechain deletion

[PATCH -stable,4.19.x 00/40] Netfilter fixes for -stable
 2024-06-13  6:43 UTC  (42+ messages)
` [PATCH -stable,4.19.x 01/40] netfilter: nf_tables: pass context to nft_set_destroy()
` [PATCH -stable,4.19.x 02/40] netfilter: nftables: rename set element data activation/deactivation functions
` [PATCH -stable,4.19.x 03/40] netfilter: nf_tables: drop map element references from preparation phase
` [PATCH -stable,4.19.x 04/40] netfilter: nft_set_rbtree: allow loose matching of closing element in interval
` [PATCH -stable,4.19.x 05/40] netfilter: nft_set_rbtree: Add missing expired checks
` [PATCH -stable,4.19.x 06/40] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
` [PATCH -stable,4.19.x 07/40] netfilter: nft_set_rbtree: fix null deref on element insertion
` [PATCH -stable,4.19.x 08/40] netfilter: nft_set_rbtree: fix overlap expiration walk
` [PATCH -stable,4.19.x 09/40] netfilter: nf_tables: don't skip expired elements during walk
` [PATCH -stable,4.19.x 10/40] netfilter: nf_tables: GC transaction API to avoid race with control plane
` [PATCH -stable,4.19.x 11/40] netfilter: nf_tables: adapt set backend to use GC transaction API
` [PATCH -stable,4.19.x 12/40] netfilter: nf_tables: remove busy mark and gc batch API
` [PATCH -stable,4.19.x 13/40] netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path
` [PATCH -stable,4.19.x 14/40] netfilter: nf_tables: GC transaction race with netns dismantle
` [PATCH -stable,4.19.x 15/40] netfilter: nf_tables: GC transaction race with abort path
` [PATCH -stable,4.19.x 16/40] netfilter: nf_tables: defer gc run if previous batch is still pending
` [PATCH -stable,4.19.x 17/40] netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction
` [PATCH -stable,4.19.x 18/40] netfilter: nft_set_rbtree: use read spinlock to avoid datapath contention
` [PATCH -stable,4.19.x 19/40] netfilter: nft_set_hash: try later when GC hits EAGAIN on iteration
` [PATCH -stable,4.19.x 20/40] netfilter: nf_tables: fix memleak when more than 255 elements expired
` [PATCH -stable,4.19.x 21/40] netfilter: nf_tables: unregister flowtable hooks on netns exit
` [PATCH -stable,4.19.x 22/40] netfilter: nf_tables: double hook unregistration in netns path
` [PATCH -stable,4.19.x 23/40] netfilter: nftables: update table flags from the commit phase
` [PATCH -stable,4.19.x 24/40] netfilter: nf_tables: fix table flag updates
` [PATCH -stable,4.19.x 25/40] netfilter: nf_tables: disable toggling dormant table state more than once
` [PATCH -stable,4.19.x 26/40] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush (for 4.19)
` [PATCH -stable,4.19.x 27/40] netfilter: nft_dynset: fix timeouts later than 23 days
` [PATCH -stable,4.19.x 28/40] netfilter: nftables: exthdr: fix 4-byte stack OOB write
` [PATCH -stable,4.19.x 29/40] netfilter: nft_dynset: report EOPNOTSUPP on missing set feature
` [PATCH -stable,4.19.x 30/40] netfilter: nft_dynset: relax superfluous check on set updates
` [PATCH -stable,4.19.x 31/40] netfilter: nf_tables: mark newset as dead on transaction abort
` [PATCH -stable,4.19.x 32/40] netfilter: nf_tables: skip dead set elements in netlink dump
` [PATCH -stable,4.19.x 33/40] netfilter: nf_tables: validate NFPROTO_* family
` [PATCH -stable,4.19.x 34/40] netfilter: nft_set_rbtree: skip end interval element from gc
` [PATCH -stable,4.19.x 35/40] netfilter: nf_tables: set dormant flag on hook register failure
` [PATCH -stable,4.19.x 36/40] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate()
` [PATCH -stable,4.19.x 37/40] netfilter: nf_tables: do not compare internal table flags on updates
` [PATCH -stable,4.19.x 38/40] netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
` [PATCH -stable,4.19.x 39/40] netfilter: nf_tables: reject new basechain after table flag update
` [PATCH -stable,4.19.x 40/40] netfilter: nf_tables: discard table flag update with pending basechain deletion

[PATCH libnetfilter_queue] Stop a memory leak in nfq_close
 2024-06-13  3:09 UTC  (5+ messages)

[PATCH nft 1/4] tests: shell: add dependencies to skip unsupported tests in older kernels
 2024-06-13  0:22 UTC  (4+ messages)
` [PATCH nft 2/4] tests: shell: skip ip option tests if kernel does not support it
` [PATCH nft 3/4] tests: shell: skip ipsec "
` [PATCH nft 4/4] tests: shell: skip NFTA_RULE_POSITION_ID "

[PATCH net 1/3] netfilter: nft_inner: validate mandatory meta and payload
 2024-06-12 23:40 UTC  (2+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for read-only IMAP folder(s) and NNTP newsgroup(s).