Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Archived =
No
| 29164 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
demarchi
ms
bhundven
chbs
kengyu
kadlec
pdp
regit
jabk
laforge
laforge
tonyb
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
mrchuck
vineetg76
computersforpeace
Noltari
Noltari
patrick_delaunay
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
mkresin
mkresin
thess
thess
fbarrat
fbarrat
phil
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
vriera
darball1
sammj
ajd
jogo
jogo
bhelgaas
blogic
blogic
tagr
tagr
tagr
oohal
russellb
ptomsich
agraf
joestringer
mwalle
naveen
pchotard
pepe2k
pepe2k
arj
arj
davem
davem
davem
andmur01
amitay
matttbe
pabeni
istokes
tytso
aparcar
Ansuel
goliath
martineau
danielschwierzeck
mariosix
dcaratti
hs
ovsrobot
ovsrobot
tpetazzoni
XiaoYang
aserdean
marex
khem
mkorpershoek
liwang
mmichelson
danielhb
groug
robimarko
npiggin
apritzel
pareddja
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
maximeh
dsa
jstancek
pm215
bpf
jonhunter
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
narmstrong
0andriy
981213
monstr
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
blocktrron
vigneshr
mraynal
chunkeey
stewart
stewart
jacmet
kabel
ukleinek
ukleinek
prom
ivanhu
rfried
sjg
ehristev
freenix
kevery
Jaehoon
rsalvaterra
adrianschmutzler
akumar
hegdevasant
hegdevasant
jagan
ag
metan
xypron
horms
bmeng
wsa
rmilecki
rmilecki
arbab
svanheule
abelloni
pablo
pablo
apconole
wbx
trini
rw
rw
legoater
legoater
legoater
chleroy
bjonglez
ynezz
pevik
sbabic
sbabic
aik
xback
xback
richiejp
dangole
dangole
echaudron
forty
anuppatel
anuppatel
next_ghost
acer
Hauke
Hauke
benh
rgrimm
segher
pratyush
passgat
jms
jms
jms
mans0n
ruscur
jk
jk
jk
jk
jmberg
numans
Andes
xuyang
ymorin
ymorin
festevam
linusw
linusw
kubu
conchuod
tambarus
matthias_bgg
spectrum
pbrobinson
stroese
krzk
dceara
strlen
strlen
imaximets
apalos
cazzacarna
neocturne
aldot
TIENFONG
mpe
sfr
galak
arnout
ktraynor
anguy11
calebccff
robh
nbd
nbd
paulus
jm
Apply
«
1
2
3
4
…
291
292
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[nf-next,1/3] netfilter: nf_tables: pass context structure to nft_parse_register_load
netfilter: nf_tables: reject loads from
- - - -
-
-
-
2024-08-20
Florian Westphal
Accepted
[net-next,3/3] netfilter: nft_counter: Use u64_stats_t for statistic.
netfilter: nft_counter: Statistics fixes/ optimisation.
- - - -
-
-
-
2024-08-20
Sebastian Andrzej Siewior
Accepted
[net,2/3] netfilter: nft_counter: Synchronize nft_counter_reset() against reader.
netfilter: nft_counter: Statistics fixes/ optimisation.
- 1 - -
-
-
-
2024-08-20
Sebastian Andrzej Siewior
Accepted
[net,1/3] netfilter: nft_counter: Disable BH in nft_counter_offload_stats().
netfilter: nft_counter: Statistics fixes/ optimisation.
- 1 - -
-
-
-
2024-08-20
Sebastian Andrzej Siewior
Accepted
[bpf-next] bpf: use kfunc hooks instead of program types
[bpf-next] bpf: use kfunc hooks instead of program types
- - - -
-
-
-
2024-08-20
Matteo Croce
Handled Elsewhere
[nft,4/4] parser_json: fix crash in json_parse_set_stmt_list
fixes for json parser
- 1 - -
-
-
-
2024-08-19
Pablo Neira Ayuso
Accepted
[nft,3/4] parser_json: fix handle memleak from error path
fixes for json parser
- 1 - -
-
-
-
2024-08-19
Pablo Neira Ayuso
Accepted
[nft,2/4] parser_json: fix several expression memleaks from error path
fixes for json parser
- 1 - -
-
-
-
2024-08-19
Pablo Neira Ayuso
Accepted
[nft,1/4] parser_json: release buffer returned by json_dumps
fixes for json parser
- 1 - -
-
-
-
2024-08-19
Pablo Neira Ayuso
Accepted
[nft,2/2] datatype: replace DTYPE_F_ALLOC by bitfield
[nft,1/2] src: remove DTYPE_F_PREFIX
- - - -
-
-
-
2024-08-19
Pablo Neira Ayuso
Accepted
[nft,1/2] src: remove DTYPE_F_PREFIX
[nft,1/2] src: remove DTYPE_F_PREFIX
- - - -
-
-
-
2024-08-19
Pablo Neira Ayuso
Accepted
[RFC,v1,4/4] selftests/landlock: Add realworld workload based on find tool
Implement performance impact measurement tool
- - - -
-
-
-
2024-08-16
Mikhail Ivanov
RFC
[RFC,v1,3/4] selftests/landlock: Implement custom libbpf-based tracer
Implement performance impact measurement tool
- - - -
-
-
-
2024-08-16
Mikhail Ivanov
RFC
[RFC,v1,2/4] selftests/landlock: Implement per-syscall microbenchmarks
Implement performance impact measurement tool
- - - -
-
-
-
2024-08-16
Mikhail Ivanov
RFC
[RFC,v1,1/4] selftests/landlock: Implement performance impact measurement tool
Implement performance impact measurement tool
- - - -
-
-
-
2024-08-16
Mikhail Ivanov
RFC
[nft] cache: revisit reset command flags
[nft] cache: revisit reset command flags
- 1 - -
-
-
-
2024-08-15
Pablo Neira Ayuso
Changes Requested
[nft] parser_bison: allow 0 burst in limit rate byte mode
[nft] parser_bison: allow 0 burst in limit rate byte mode
- 2 - -
-
-
-
2024-08-15
Pablo Neira Ayuso
Accepted
[nft,5/5] cache: do not fetch set inconditionally on delete
relax cache requirements, speed up incremental updates
- - - -
-
-
-
2024-08-15
Pablo Neira Ayuso
Accepted
[nft,4/5] cache: populate flowtable on demand from error path
relax cache requirements, speed up incremental updates
- - - -
-
-
-
2024-08-15
Pablo Neira Ayuso
Accepted
[nft,3/5] cache: populate objecs on demand from error path
relax cache requirements, speed up incremental updates
- - - -
-
-
-
2024-08-15
Pablo Neira Ayuso
Accepted
[nft,2/5] cache: populate chains on demand from error path
relax cache requirements, speed up incremental updates
- - - -
-
-
-
2024-08-15
Pablo Neira Ayuso
Accepted
[nft,1/5] cache: rule by index requires full cache
relax cache requirements, speed up incremental updates
- - - -
-
-
-
2024-08-15
Pablo Neira Ayuso
Accepted
[nft] tests: shell: add a few tests for nft -i
[nft] tests: shell: add a few tests for nft -i
- - - -
-
-
-
2024-08-15
Pablo Neira Ayuso
Accepted
netfilter: nfnetlink: fix uninitialized local variable
netfilter: nfnetlink: fix uninitialized local variable
- 1 - -
-
-
-
2024-08-15
icejl
Not Applicable
[nft] cache: populate chains on demand from error path
[nft] cache: populate chains on demand from error path
- - - -
-
-
-
2024-08-14
Pablo Neira Ayuso
Changes Requested
[net-next,v2,3/3] ipv4: Centralize TOS matching
Preparations for FIB rule DSCP selector
- - 1 -
-
-
-
2024-08-14
Ido Schimmel
Handled Elsewhere
[net-next,v2,2/3] netfilter: nft_fib: Mask upper DSCP bits before FIB lookup
Preparations for FIB rule DSCP selector
- - 1 -
-
-
-
2024-08-14
Ido Schimmel
Handled Elsewhere
[net-next,v2,1/3] ipv4: Mask upper DSCP bits and ECN bits in NETLINK_FIB_LOOKUP family
Preparations for FIB rule DSCP selector
- - 1 -
-
-
-
2024-08-14
Ido Schimmel
Handled Elsewhere
[nft,v2,2/2] datatype: improve error reporting when time unit is not correct
[nft,v2,1/2] datatype: reject rate in quota statement
- 1 - -
-
-
-
2024-08-14
Pablo Neira Ayuso
Accepted
[nft,v2,1/2] datatype: reject rate in quota statement
[nft,v2,1/2] datatype: reject rate in quota statement
- 1 - -
-
-
-
2024-08-14
Pablo Neira Ayuso
Accepted
[nft,2/2] datatype: improve error reporting when time unit is not correct
[nft,1/2] datatype: replace strncmp() by strcmp() in unit parser
- 1 - -
-
-
-
2024-08-14
Pablo Neira Ayuso
Changes Requested
[nft,1/2] datatype: replace strncmp() by strcmp() in unit parser
[nft,1/2] datatype: replace strncmp() by strcmp() in unit parser
- 1 - -
-
-
-
2024-08-14
Pablo Neira Ayuso
Changes Requested
tests: shell: skip vlan mangling testcase if egress is not support
tests: shell: skip vlan mangling testcase if egress is not support
- - - -
-
-
-
2024-08-14
Pablo Neira Ayuso
Accepted
[RFC,v2,9/9] samples/landlock: Support LANDLOCK_ACCESS_NET_LISTEN
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[RFC,v2,8/9] selftests/landlock: Test changing socket backlog with listen(2)
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[RFC,v2,7/9] selftests/landlock: Test listen on ULP socket without clone method
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[RFC,v2,6/9] selftests/landlock: Test listening without explicit bind restriction
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[RFC,v2,5/9] selftests/landlock: Test listen on connected socket
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[RFC,v2,4/9] selftests/landlock: Test listening restriction
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[RFC,v2,3/9] selftests/landlock: Support LANDLOCK_ACCESS_NET_LISTEN_TCP
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[RFC,v2,2/9] landlock: Support TCP listen access-control
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[RFC,v2,1/9] landlock: Refactor current_check_access_socket() access right check
Support TCP listen access-control
- - - -
-
-
-
2024-08-14
Mikhail Ivanov
RFC
[nft] tests: shell: Extend table persist flag test a bit
[nft] tests: shell: Extend table persist flag test a bit
- - - -
-
-
-
2024-08-13
Phil Sutter
Accepted
[nf] netfilter: flowtable: validate vlan header
[nf] netfilter: flowtable: validate vlan header
- 1 - -
-
-
-
2024-08-13
Pablo Neira Ayuso
Changes Requested
[-stable,4.19.x,3/3] netfilter: nf_tables: prefer nft_chain_validate
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,4.19.x,2/3] netfilter: nf_tables: use timestamp to check for set element timeout
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,4.19.x,1/3] netfilter: nf_tables: set element extended ACK reporting support
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.4.x,3/3] netfilter: nf_tables: prefer nft_chain_validate
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.4.x,2/3] netfilter: nf_tables: use timestamp to check for set element timeout
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.4.x,1/3] netfilter: nf_tables: set element extended ACK reporting support
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.10.x,4/4] netfilter: nf_tables: prefer nft_chain_validate
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.10.x,3/4] netfilter: nf_tables: allow clone callbacks to sleep
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.10.x,2/4] netfilter: nf_tables: use timestamp to check for set element timeout
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.10.x,1/4] netfilter: nf_tables: set element extended ACK reporting support
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.15.x,5/5] netfilter: nf_tables: prefer nft_chain_validate
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.15.x,4/5] netfilter: nf_tables: allow clone callbacks to sleep
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.15.x,3/5] netfilter: nf_tables: bail out if stateful expression provides no .clone
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.15.x,2/5] netfilter: nf_tables: use timestamp to check for set element timeout
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,5.15.x,1/5] netfilter: nf_tables: set element extended ACK reporting support
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,6.1.x,3/3] netfilter: nf_tables: prefer nft_chain_validate
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,6.1.x,2/3] netfilter: nf_tables: allow clone callbacks to sleep
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,6.1.x,1/3] netfilter: nf_tables: bail out if stateful expression provides no .clone
Netfilter fixes for -stable
- - - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
[-stable,6.6.x,1/1] netfilter: nf_tables: prefer nft_chain_validate
Netfilter fixes for -stable
- 1 - -
-
-
-
2024-08-12
Pablo Neira Ayuso
Awaiting Upstream
netfilter: nfnetlink_log: remove unnecessary check in __build_packet_message()
netfilter: nfnetlink_log: remove unnecessary check in __build_packet_message()
- - 1 -
-
-
-
2024-08-09
Roman Smirnov
Changes Requested
[nft] src: add never expires marker for element timeout
[nft] src: add never expires marker for element timeout
- - - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
[nf-next,8/8] netfilter: nf_tables: set element timeout update support
nf_tables: support for updating set element timeout
- - - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
[nf-next,7/8] netfilter: nf_tables: add never expires marker to elements
nf_tables: support for updating set element timeout
- - - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
[nf-next,6/8] netfilter: nf_tables: consolidate timeout extension for elements
nf_tables: support for updating set element timeout
- - - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
[nf-next,5/8] netfilter: nf_tables: annotate data-races around element expiration
nf_tables: support for updating set element timeout
- - - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
[nf-next,4/8] netfilter: nft_dynset: annotate data-races around set timeout
nf_tables: support for updating set element timeout
- 1 - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
[nf-next,3/8] netfilter: nf_tables: remove annotation to access set timeout while holding lock
nf_tables: support for updating set element timeout
- - - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
[nf-next,2/8] netfilter: nf_tables: reject element expiration with no timeout
nf_tables: support for updating set element timeout
- 1 - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
[nf-next,1/8] netfilter: nf_tables: elements with timeout less than HZ/10 never expire
nf_tables: support for updating set element timeout
- 1 - -
-
-
-
2024-08-07
Pablo Neira Ayuso
Changes Requested
netfilter: nf_tables: Add __percpu annotation to *stats pointer in nf_tables_updchain()
netfilter: nf_tables: Add __percpu annotation to *stats pointer in nf_tables_updchain()
- - 1 -
-
-
-
2024-08-06
Uros Bizjak
Changes Requested
[iptables,RFC,8/8] nft: Support compat extensions in rule userdata
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-07-31
Phil Sutter
New
[iptables,7/8] nft: Introduce UDATA_TYPE_COMPAT_EXT
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-07-31
Phil Sutter
New
[iptables,6/8] nft: __add_{match,target}() can't fail
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-07-31
Phil Sutter
New
[iptables,5/8] nft: ruleparse: Introduce nft_parse_rule_expr()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-07-31
Phil Sutter
New
[iptables,4/8] nft: ruleparse: Drop 'iter' variable in nft_rule_to_iptables_command_state
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-07-31
Phil Sutter
Accepted
[iptables,3/8] nft: Reduce overhead in nft_rule_find()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-07-31
Phil Sutter
Accepted
[iptables,2/8] ebtables: Introduce nft_bridge_init_cs()
nft: Implement forward compat for future binaries
- - - -
-
-
-
2024-07-31
Phil Sutter
Accepted
[iptables,1/8] ebtables: Zero freed pointers in ebt_cs_clean()
nft: Implement forward compat for future binaries
- 1 - -
-
-
-
2024-07-31
Phil Sutter
Accepted
[net,2/2] netfilter: iptables: Fix potential null-ptr-deref in ip6table_nat_table_init().
[net,1/2] netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init().
- 1 1 -
-
-
-
2024-07-31
Pablo Neira Ayuso
Accepted
[net,1/2] netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init().
[net,1/2] netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init().
- 1 1 -
-
-
-
2024-07-31
Pablo Neira Ayuso
Accepted
[net,0/2] Netfilter fixes for net
- - - -
-
-
-
2024-07-31
Pablo Neira Ayuso
Accepted
[libmnl] README: Document the contribution process
[libmnl] README: Document the contribution process
- - - -
-
-
-
2024-07-31
Petr Machata
Accepted
[libmnl] src: attr: Add mnl_attr_get_uint() function
[libmnl] src: attr: Add mnl_attr_get_uint() function
- - - -
-
-
-
2024-07-31
Danielle Ratson
Accepted
[iptables,14/14] ebtables: Omit all-wildcard interface specs from output
Some fixes and trivial improvements
- - - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,13/14] arptables: Introduce print_iface()
Some fixes and trivial improvements
- - - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,12/14] libxtables: Debug: Slightly improve extension ordering debugging
Some fixes and trivial improvements
- - - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,11/14] xshared: Move NULL pointer check into save_iface()
Some fixes and trivial improvements
- - - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,10/14] xshared: Make save_iface() static
Some fixes and trivial improvements
- - - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,09/14] extensions: conntrack: Reuse print_state() for old state match
Some fixes and trivial improvements
- - - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,08/14] xshared: Do not omit all-wildcard interface spec when inverted
Some fixes and trivial improvements
- 1 - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,07/14] arptables: Fix conditional opcode/proto-type printing
Some fixes and trivial improvements
- 1 - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,06/14] nft: Add potentially missing init_cs calls
Some fixes and trivial improvements
- 1 - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,05/14] nft: cmd: Init struct nft_cmd::head early
Some fixes and trivial improvements
- 1 - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,04/14] extensions: conntrack: Use the right callbacks
Some fixes and trivial improvements
- 1 - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,03/14] extensions: recent: Fix format string for unsigned values
Some fixes and trivial improvements
- 1 - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
[iptables,02/14] nft: Fix for zeroing existent builtin chains
Some fixes and trivial improvements
- 1 - -
-
-
-
2024-07-27
Phil Sutter
phil
Accepted
«
1
2
3
4
…
291
292
»