From: Jozsef Kadlecsik <kadlec@netfilter.org>
To: netfilter-devel@vger.kernel.org
Cc: Pablo Neira Ayuso <pablo@netfilter.org>
Subject: [PATCH 0/2] ipset patches for nf
Date: Sat, 22 Feb 2020 12:30:03 +0100 [thread overview]
Message-ID: <20200222113005.5647-1-kadlec@netfilter.org> (raw)
Hi Pablo,
Please consider to apply the next two patches to the nf tree. The first one
is larger than usual, but the issue could not be solved simpler. Also, it's
a resend of the patch I submitted a few days ago, with a one line fix on
top of that: the size of the comment extensions was not taken into account
at reporting the full size of the set.
- Fix "INFO: rcu detected stall in hash_xxx" reports of syzbot
by introducing region locking and using workqueue instead of timer based
gc of timed out entries in hash types of sets in ipset.
- Fix the forceadd evaluation path - the bug was also uncovered by the syzbot.
Best regards,
Jozsef
The following changes since commit 83d0585f91da441a0b11bc5ff93f4cda56de6703:
Merge branch 'Fix-reconnection-latency-caused-by-FIN-ACK-handling-race' (2020-02-02 13:45:05 -0800)
are available in the Git repository at:
git://blackhole.kfki.hu/nf 8af1c6fbd923987799
for you to fetch changes up to 8af1c6fbd9239877998c7f5a591cb2c88d41fb66:
netfilter: ipset: Fix forceadd evaluation path (2020-02-22 12:13:45 +0100)
----------------------------------------------------------------
Jozsef Kadlecsik (2):
netfilter: ipset: Fix "INFO: rcu detected stall in hash_xxx" reports
netfilter: ipset: Fix forceadd evaluation path
include/linux/netfilter/ipset/ip_set.h | 11 +-
net/netfilter/ipset/ip_set_core.c | 34 +-
net/netfilter/ipset/ip_set_hash_gen.h | 635 +++++++++++++++++++++++----------
3 files changed, 474 insertions(+), 206 deletions(-)
next reply other threads:[~2020-02-22 11:30 UTC|newest]
Thread overview: 10+ messages / expand[flat|nested] mbox.gz Atom feed top
2020-02-22 11:30 Jozsef Kadlecsik [this message]
2020-02-22 11:30 ` [PATCH 1/2] netfilter: ipset: Fix "INFO: rcu detected stall in hash_xxx" reports Jozsef Kadlecsik
2020-02-22 11:30 ` [PATCH 2/2] netfilter: ipset: Fix forceadd evaluation path Jozsef Kadlecsik
2020-02-26 13:02 ` [PATCH 0/2] ipset patches for nf Pablo Neira Ayuso
-- strict thread matches above, loose matches on Subject: below --
2022-12-30 12:24 Jozsef Kadlecsik
2022-12-30 12:42 ` Jozsef Kadlecsik
2023-01-02 14:12 ` Pablo Neira Ayuso
2023-01-02 14:13 ` Pablo Neira Ayuso
2017-02-19 18:24 Jozsef Kadlecsik
2017-02-21 13:05 ` Pablo Neira Ayuso
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20200222113005.5647-1-kadlec@netfilter.org \
--to=kadlec@netfilter.org \
--cc=netfilter-devel@vger.kernel.org \
--cc=pablo@netfilter.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.