netfilter-devel.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
[PATCH 00/14] replace call_rcu by kfree_rcu for simple kmem_cache_free callback
 2024-06-14 19:33 UTC  (28+ messages)
` [PATCH 14/14] netfilter: "

[nf-next PATCH v2 0/2] netfilter: xt_recent: Allow for larger hitcount values
 2024-06-14 15:58 UTC  (5+ messages)
` [nf-next PATCH v2 1/2] netfilter: xt_recent: Reduce size of struct recent_entry::nstamps
` [nf-next PATCH v2 2/2] netfilter: xt_recent: Lift restrictions on max hitcount value

[PATCH v5 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
 2024-06-14 15:40 UTC  (4+ messages)
` [PATCH v5 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
` [PATCH v5 bpf-next 2/3] netfilter: add bpf_xdp_flow_lookup kfunc
` [PATCH v5 bpf-next 3/3] selftests/bpf: Add selftest for "

[PATCH v4 bpf-next 0/3] netfilter: Add the capability to offload flowtable in XDP layer
 2024-06-14 15:19 UTC  (8+ messages)
` [PATCH v4 bpf-next 1/3] netfilter: nf_tables: add flowtable map for xdp offload
` [PATCH v4 bpf-next 3/3] selftests/bpf: Add selftest for bpf_xdp_flow_lookup kfunc

[nf-next PATCH 0/2] netfilter: xt_recent: Allow for much larger hitcount values
 2024-06-14 10:45 UTC  (5+ messages)
` [nf-next PATCH 1/2] netfilter: xt_reent: Reduce size of struct recent_entry::nstamps
` [nf-next PATCH 2/2] netfilter: xt_recent: Largely lift restrictions on max hitcount value

[syzbot] [netfilter?] upstream test error: WARNING: suspicious RCU usage in _destroy_all_sets
 2024-06-14  8:20 UTC 

[syzbot] [netfilter?] net test error: WARNING: suspicious RCU usage in _destroy_all_sets
 2024-06-14  8:20 UTC 

[syzbot] [netfilter?] net-next test error: WARNING: suspicious RCU usage in _destroy_all_sets
 2024-06-14  8:20 UTC 

[linus:master] [netfilter] 4e7aaa6b82: WARNING:suspicious_RCU_usage
 2024-06-14  7:44 UTC 

[PATCH -stable,5.4] netfilter: nftables: exthdr: fix 4-byte stack OOB write
 2024-06-13 17:14 UTC 

[PATCH -stable,5.4] netfilter: nftables: exthdr: fix 4-byte stack OOB write
 2024-06-13 17:13 UTC 

[PATCH 4.19 159/213] netfilter: nf_tables: pass context to nft_set_destroy()
 2024-06-13 11:34 UTC  (40+ messages)
` [PATCH 4.19 160/213] netfilter: nftables: rename set element data activation/deactivation functions
` [PATCH 4.19 161/213] netfilter: nf_tables: drop map element references from preparation phase
` [PATCH 4.19 162/213] netfilter: nft_set_rbtree: allow loose matching of closing element in interval
` [PATCH 4.19 163/213] netfilter: nft_set_rbtree: Add missing expired checks
` [PATCH 4.19 164/213] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
` [PATCH 4.19 165/213] netfilter: nft_set_rbtree: fix null deref on element insertion
` [PATCH 4.19 166/213] netfilter: nft_set_rbtree: fix overlap expiration walk
` [PATCH 4.19 167/213] netfilter: nf_tables: dont skip expired elements during walk
` [PATCH 4.19 168/213] netfilter: nf_tables: GC transaction API to avoid race with control plane
` [PATCH 4.19 169/213] netfilter: nf_tables: adapt set backend to use GC transaction API
` [PATCH 4.19 170/213] netfilter: nf_tables: remove busy mark and gc batch API
` [PATCH 4.19 171/213] netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path
` [PATCH 4.19 172/213] netfilter: nf_tables: GC transaction race with netns dismantle
` [PATCH 4.19 173/213] netfilter: nf_tables: GC transaction race with abort path
` [PATCH 4.19 174/213] netfilter: nf_tables: defer gc run if previous batch is still pending
` [PATCH 4.19 175/213] netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction
` [PATCH 4.19 176/213] netfilter: nft_set_rbtree: use read spinlock to avoid datapath contention
` [PATCH 4.19 177/213] netfilter: nft_set_hash: try later when GC hits EAGAIN on iteration
` [PATCH 4.19 178/213] netfilter: nf_tables: fix memleak when more than 255 elements expired
` [PATCH 4.19 179/213] netfilter: nf_tables: unregister flowtable hooks on netns exit
` [PATCH 4.19 180/213] netfilter: nf_tables: double hook unregistration in netns path
` [PATCH 4.19 181/213] netfilter: nftables: update table flags from the commit phase
` [PATCH 4.19 182/213] netfilter: nf_tables: fix table flag updates
` [PATCH 4.19 183/213] netfilter: nf_tables: disable toggling dormant table state more than once
` [PATCH 4.19 184/213] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush (for 4.19)
` [PATCH 4.19 185/213] netfilter: nft_dynset: fix timeouts later than 23 days
` [PATCH 4.19 186/213] netfilter: nftables: exthdr: fix 4-byte stack OOB write
` [PATCH 4.19 187/213] netfilter: nft_dynset: report EOPNOTSUPP on missing set feature
` [PATCH 4.19 188/213] netfilter: nft_dynset: relax superfluous check on set updates
` [PATCH 4.19 189/213] netfilter: nf_tables: mark newset as dead on transaction abort
` [PATCH 4.19 190/213] netfilter: nf_tables: skip dead set elements in netlink dump
` [PATCH 4.19 191/213] netfilter: nf_tables: validate NFPROTO_* family
` [PATCH 4.19 192/213] netfilter: nft_set_rbtree: skip end interval element from gc
` [PATCH 4.19 193/213] netfilter: nf_tables: set dormant flag on hook register failure
` [PATCH 4.19 194/213] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate()
` [PATCH 4.19 195/213] netfilter: nf_tables: do not compare internal table flags on updates
` [PATCH 4.19 196/213] netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
` [PATCH 4.19 197/213] netfilter: nf_tables: reject new basechain after table flag update
` [PATCH 4.19 198/213] netfilter: nf_tables: discard table flag update with pending basechain deletion

[PATCH -stable,4.19.x 00/40] Netfilter fixes for -stable
 2024-06-13  6:43 UTC  (42+ messages)
` [PATCH -stable,4.19.x 01/40] netfilter: nf_tables: pass context to nft_set_destroy()
` [PATCH -stable,4.19.x 02/40] netfilter: nftables: rename set element data activation/deactivation functions
` [PATCH -stable,4.19.x 03/40] netfilter: nf_tables: drop map element references from preparation phase
` [PATCH -stable,4.19.x 04/40] netfilter: nft_set_rbtree: allow loose matching of closing element in interval
` [PATCH -stable,4.19.x 05/40] netfilter: nft_set_rbtree: Add missing expired checks
` [PATCH -stable,4.19.x 06/40] netfilter: nft_set_rbtree: Switch to node list walk for overlap detection
` [PATCH -stable,4.19.x 07/40] netfilter: nft_set_rbtree: fix null deref on element insertion
` [PATCH -stable,4.19.x 08/40] netfilter: nft_set_rbtree: fix overlap expiration walk
` [PATCH -stable,4.19.x 09/40] netfilter: nf_tables: don't skip expired elements during walk
` [PATCH -stable,4.19.x 10/40] netfilter: nf_tables: GC transaction API to avoid race with control plane
` [PATCH -stable,4.19.x 11/40] netfilter: nf_tables: adapt set backend to use GC transaction API
` [PATCH -stable,4.19.x 12/40] netfilter: nf_tables: remove busy mark and gc batch API
` [PATCH -stable,4.19.x 13/40] netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path
` [PATCH -stable,4.19.x 14/40] netfilter: nf_tables: GC transaction race with netns dismantle
` [PATCH -stable,4.19.x 15/40] netfilter: nf_tables: GC transaction race with abort path
` [PATCH -stable,4.19.x 16/40] netfilter: nf_tables: defer gc run if previous batch is still pending
` [PATCH -stable,4.19.x 17/40] netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction
` [PATCH -stable,4.19.x 18/40] netfilter: nft_set_rbtree: use read spinlock to avoid datapath contention
` [PATCH -stable,4.19.x 19/40] netfilter: nft_set_hash: try later when GC hits EAGAIN on iteration
` [PATCH -stable,4.19.x 20/40] netfilter: nf_tables: fix memleak when more than 255 elements expired
` [PATCH -stable,4.19.x 21/40] netfilter: nf_tables: unregister flowtable hooks on netns exit
` [PATCH -stable,4.19.x 22/40] netfilter: nf_tables: double hook unregistration in netns path
` [PATCH -stable,4.19.x 23/40] netfilter: nftables: update table flags from the commit phase
` [PATCH -stable,4.19.x 24/40] netfilter: nf_tables: fix table flag updates
` [PATCH -stable,4.19.x 25/40] netfilter: nf_tables: disable toggling dormant table state more than once
` [PATCH -stable,4.19.x 26/40] netfilter: nf_tables: bogus EBUSY when deleting flowtable after flush (for 4.19)
` [PATCH -stable,4.19.x 27/40] netfilter: nft_dynset: fix timeouts later than 23 days
` [PATCH -stable,4.19.x 28/40] netfilter: nftables: exthdr: fix 4-byte stack OOB write
` [PATCH -stable,4.19.x 29/40] netfilter: nft_dynset: report EOPNOTSUPP on missing set feature
` [PATCH -stable,4.19.x 30/40] netfilter: nft_dynset: relax superfluous check on set updates
` [PATCH -stable,4.19.x 31/40] netfilter: nf_tables: mark newset as dead on transaction abort
` [PATCH -stable,4.19.x 32/40] netfilter: nf_tables: skip dead set elements in netlink dump
` [PATCH -stable,4.19.x 33/40] netfilter: nf_tables: validate NFPROTO_* family
` [PATCH -stable,4.19.x 34/40] netfilter: nft_set_rbtree: skip end interval element from gc
` [PATCH -stable,4.19.x 35/40] netfilter: nf_tables: set dormant flag on hook register failure
` [PATCH -stable,4.19.x 36/40] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate()
` [PATCH -stable,4.19.x 37/40] netfilter: nf_tables: do not compare internal table flags on updates
` [PATCH -stable,4.19.x 38/40] netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout
` [PATCH -stable,4.19.x 39/40] netfilter: nf_tables: reject new basechain after table flag update
` [PATCH -stable,4.19.x 40/40] netfilter: nf_tables: discard table flag update with pending basechain deletion

[PATCH libnetfilter_queue] Stop a memory leak in nfq_close
 2024-06-13  3:09 UTC  (5+ messages)

[PATCH nft 1/4] tests: shell: add dependencies to skip unsupported tests in older kernels
 2024-06-13  0:22 UTC  (4+ messages)
` [PATCH nft 2/4] tests: shell: skip ip option tests if kernel does not support it
` [PATCH nft 3/4] tests: shell: skip ipsec "
` [PATCH nft 4/4] tests: shell: skip NFTA_RULE_POSITION_ID "

[PATCH net 0/3] Netfilter fixes for net
 2024-06-12 23:40 UTC  (5+ messages)
` [PATCH net 1/3] netfilter: nft_inner: validate mandatory meta and payload
` [PATCH net 2/3] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type
` [PATCH net 3/3] netfilter: Use flowlabel flow key when re-routing mangled packets

[iptables PATCH] ebtables: Include 'bitmask' value when comparing rules
 2024-06-12 20:45 UTC  (2+ messages)

[iptables PATCH] extensions: libxt_sctp: Add an extra assert()
 2024-06-12 20:44 UTC  (2+ messages)

[iptables PATCH] man: extensions: recent: Clarify default value of ip_list_hash_size
 2024-06-12 20:44 UTC  (2+ messages)

[iptables PATCH] man: recent: Adjust to changes around ip_pkt_list_tot parameter
 2024-06-12 19:49 UTC  (3+ messages)

[PATCH v6 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage
 2024-06-12 16:44 UTC 

[PATCH 1/2 v5.10] netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEV
 2024-06-12 14:48 UTC  (3+ messages)
` [PATCH 2/2 v5.10] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get()

[PATCH v6.1] netfilter: nf_tables: use timestamp to check for set element timeout
 2024-06-12 13:15 UTC  (2+ messages)

let nftables indicate incomplete dissections
 2024-06-12 13:02 UTC  (2+ messages)

[PATCH nft,v2] monitor: too large shift exponent displaying payload expression
 2024-06-11 18:18 UTC 

[PATCH nft,v2] cmd: skip variable set elements when collapsing commands
 2024-06-11 17:38 UTC 

[PATCH 0/1] ipset patch for nf tree
 2024-06-11 16:45 UTC  (4+ messages)
` [PATCH 1/1] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type

[PATCH nf] netfilter: Use flowlabel flow key when re-routing mangled packets
 2024-06-11 16:44 UTC  (2+ messages)

[PATCH nft] cmd: skip variable set elements when collapsing commands
 2024-06-11 16:17 UTC 

[RFC PATCH v2 00/12] Socket type control for Landlock
 2024-06-11 11:35 UTC  (18+ messages)
` [RFC PATCH v2 01/12] landlock: Support socket access-control
` [RFC PATCH v2 02/12] landlock: Add hook on socket creation

Testing stable backports for netfilter
 2024-06-11  9:00 UTC  (6+ messages)

[PATCH v3 0/2] netfilter: nfqueue: incorrect sctp checksum
 2024-06-11  8:46 UTC  (11+ messages)

[PATCH nf-next,v4 1/2] netfilter: nfnetlink_queue: unbreak SCTP traffic
 2024-06-11  8:34 UTC  (2+ messages)
` [PATCH nf-next,v4 2/2] selftests: net: netfilter: nft_queue.sh: sctp coverage

[PATCH net v2 2/3] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter
 2024-06-11  7:58 UTC  (5+ messages)

[PATCH nft] cmd: provide better hint if chain is already declared with different type/hook/priority
 2024-06-10 17:40 UTC 

[PATCH nft] monitor: too large shift exponent displaying payload expression
 2024-06-10 17:20 UTC 

[PATCH net-next 0/2] net: flow dissector: allow explicit passing of netns
 2024-06-08 22:17 UTC  (9+ messages)
` [PATCH net-next 1/2] net: add and use skb_get_hash_net
` [PATCH net-next 2/2] net: add and use __skb_get_hash_symmetric_net

[PATCH v5 net-next 07/15] netfilter: br_netfilter: Use nested-BH locking for brnf_frag_data_storage
 2024-06-07  6:53 UTC 

[PATCH nf] netfilter: nf_reject: init skb->dev for reset packet
 2024-06-06 14:52 UTC  (12+ messages)


This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).