Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: State =
Action Required
| Archived =
No
| 112 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
demarchi
ms
bhundven
chbs
kengyu
kadlec
regit
jabk
laforge
laforge
tonyb
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
patrick_delaunay
mrchuck
vineetg76
computersforpeace
Noltari
Noltari
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
mkresin
mkresin
thess
thess
fbarrat
fbarrat
phil
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
ajd
darball1
sammj
jogo
jogo
bhelgaas
blogic
blogic
oohal
russellb
ptomsich
agraf
joestringer
mwalle
naveen
pepe2k
pepe2k
tagr
tagr
tagr
pchotard
arj
arj
davem
davem
davem
jforissier
andmur01
amitay
matttbe
pabeni
istokes
maddy
aparcar
danielschwierzeck
tytso
martineau
Ansuel
goliath
mariosix
dcaratti
aserdean
ovsrobot
ovsrobot
XiaoYang
marex
mkorpershoek
tpetazzoni
khem
liwang
robimarko
apritzel
danielhb
groug
npiggin
mmichelson
pareddja
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
dsa
jstancek
pm215
bpf
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
0andriy
981213
narmstrong
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
blocktrron
vigneshr
monstr
mraynal
chunkeey
stewart
stewart
wsa
kabel
Jaehoon
rfried
freenix
arbab
rsalvaterra
adrianschmutzler
ag
hegdevasant
hegdevasant
ehristev
ukleinek
ukleinek
jacmet
jagan
metan
prom
ivanhu
bmeng
rmilecki
rmilecki
sjg
xypron
horms
akumar
kevery
wbx
chleroy
trini
apconole
juju
legoater
legoater
legoater
svanheule
rw
rw
abelloni
pablo
pablo
bjonglez
ynezz
xback
xback
richiejp
dangole
dangole
sbabic
sbabic
pevik
jonhunter
aik
Hauke
Hauke
acer
forty
echaudron
amusil
anuppatel
anuppatel
next_ghost
benh
rgrimm
segher
pratyush
passgat
jms
jms
jms
jmberg
mans0n
ruscur
jk
jk
jk
jk
festevam
numans
Andes
ymorin
xuyang
linusw
linusw
tambarus
conchuod
kubu
matthias_bgg
ltpci
stroese
krzk
spectrum
imaximets
dceara
apalos
pbrobinson
strlen
strlen
neocturne
cazzacarna
aldot
TIENFONG
mpe
sfr
galak
ktraynor
arnout
anguy11
nbd
nbd
kcxt
robh
paulus
jm
hs
Apply
«
1
2
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
NETFILTER: Fix typo in nf_conntrack_l4proto.h comment
NETFILTER: Fix typo in nf_conntrack_l4proto.h comment
- - - -
-
-
-
2024-11-28
caivive (Weibiao Tu)
New
[1/2,libnftnl,v2] src: use uint64_t for flags fields
[1/2,libnftnl,v2] src: use uint64_t for flags fields
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[1/7,nft] src: add tunnel template support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[2/2,libnftnl,v2] tunnel: add support to geneve options
[1/2,libnftnl,v2] src: use uint64_t for flags fields
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[2/7,nft] tunnel: add erspan support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[3/7,nft] src: add tunnel statement and expression support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[4/7,nft] tunnel: add vxlan support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[5/7,nft] tunnel: add geneve support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[6/7,nft] tunnel: add tunnel object and statement json support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[7/7,nft] tests: add tunnel shell and python tests
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[RFC,v1,nf-next] selftests: netfilter: Add bridge_fastpath.sh
[RFC,v1,nf-next] selftests: netfilter: Add bridge_fastpath.sh
- - - -
-
-
-
2025-04-08
Eric Woudstra
New
[V2] netfilter: nf_conntrack: table full detailed log
[V2] netfilter: nf_conntrack: table full detailed log
- - - -
-
-
-
2025-05-22
lvxiafei
New
[V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
[V6] netfilter: netns nf_conntrack: per-netns net.netfilter.nf_conntrack_max sysctl
- - - -
-
-
-
2025-04-15
lvxiafei
New
[conntrack-tools] conntrack: introduce --labelmap option to specify connlabel.conf path
[conntrack-tools] conntrack: introduce --labelmap option to specify connlabel.conf path
- - - -
-
-
-
2025-06-13
Christoph Heiss
New
[libnftnl,1/4] include: utils.h needs errno.h
Support wildcard netdev hooks and events
- 1 - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,2/4] utils: Add helpers for interface name wildcards
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,3/4] utils: Introduce nftnl_parse_str_attr()
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,4/4] device: Introduce nftnl_device
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[libnftnl,v2] trace: add support for TRACE_CT information
[libnftnl,v2] trace: add support for TRACE_CT information
- - - -
-
-
-
2025-05-22
Florian Westphal
New
[net-next] selftest:net: fixed spelling mistakes
[net-next] selftest:net: fixed spelling mistakes
- - 1 -
-
-
-
2025-02-17
Andres Urian Florez
New
[nf-next,1/3] netfilter: nf_set_pipapo_avx2: fix initial map fill
netfilter: nf_set_pipapo_avx2: fix initial map fill
- 1 - -
-
-
-
2025-05-23
Florian Westphal
New
[nf-next,1/3] netfilter: nf_tables: commit_notify: Support varying groups
netfilter: nf_tables: Report found devices when creating a netdev hook
- - - -
-
-
-
2025-06-12
Phil Sutter
New
[nf-next,2/3] netfilter: nf_tables: Support enqueueing device notifications
netfilter: nf_tables: Report found devices when creating a netdev hook
- - - -
-
-
-
2025-06-12
Phil Sutter
New
[nf-next,2/3] selftests: netfilter: nft_concat_range.sh: prefer per element counters for testing
netfilter: nf_set_pipapo_avx2: fix initial map fill
- - - -
-
-
-
2025-05-23
Florian Westphal
New
[nf-next,3/3] netfilter: nf_tables: Extend chain/flowtable notifications
netfilter: nf_tables: Report found devices when creating a netdev hook
- - - -
-
-
-
2025-06-12
Phil Sutter
New
[nf-next,3/3] selftests: netfilter: nft_concat_range.sh: add datapath check for map fill bug
netfilter: nf_set_pipapo_avx2: fix initial map fill
- - - -
-
-
-
2025-05-23
Florian Westphal
New
[nf-next,v2,1/2] netfilter: nf_tables: Drop dead code from fill_*_info routines
netfilter: nf_tables: Fix for extra data in delete notifications
- 1 - -
-
-
-
2025-06-13
Phil Sutter
New
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
1 1 - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,2/2] netfilter: nf_tables: Reintroduce shortened deletion notifications
netfilter: nf_tables: Fix for extra data in delete notifications
- - - -
-
-
-
2025-06-13
Phil Sutter
New
[nf-next,v2,2/2] netfilter: nf_tables: honor validation state in preparation phase
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
- 1 1 -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,2/4] netfilter: nf_tables: add new binding infrastructure
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,3/3] selftests: netfilter: flowtable vlan filtering bridge support
[nf-next,v2,1/3] nf_flow_table_offload: offload the vlan encap in the flowtable
- - - -
-
-
-
2022-05-26
wenxu@chinatelecom.cn
pablo
Under Review
[nf-next,v2,3/4] netfilter: nf_tables: use new binding infrastructure
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,4/4] netfilter: nf_tables: add support for validating incremental ruleset updates
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2] netfilter: conntrack: remove DCCP protocol support
[nf-next,v2] netfilter: conntrack: remove DCCP protocol support
- - 1 -
-
-
-
2025-05-22
Pablo Neira Ayuso
New
[nf-next,v2] netfilter: nf_tables: Fix for extra data in delete notifications
[nf-next,v2] netfilter: nf_tables: Fix for extra data in delete notifications
- 1 - -
-
-
-
2025-06-12
Phil Sutter
New
[nf-next] netfilter: nf_tables: Fix for extra data in delete notifications
[nf-next] netfilter: nf_tables: Fix for extra data in delete notifications
- 1 - -
-
-
-
2025-06-12
Phil Sutter
New
[nf-next] netfilter: nft_byteorder: remove multi-register support
[nf-next] netfilter: nft_byteorder: remove multi-register support
- 1 - -
-
-
-
2024-02-14
Florian Westphal
New
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection
[nf] netfilter: conntrack: correct sequence on reinitialized TCP connection
- 1 - -
-
-
-
2025-02-20
Pablo Neira Ayuso
New
[nf] netfilter: restore default behavior for nf_conntrack_events
[nf] netfilter: restore default behavior for nf_conntrack_events
- 1 - -
-
-
-
2024-06-04
Nicolas Dichtel
New
[nft,1/2] evaluate: rename recursion counter to recursion.binop
[nft,1/2] evaluate: rename recursion counter to recursion.binop
- - - -
-
-
-
2025-04-02
Florian Westphal
New
[nft,1/4] netlink_delinearize: Replace some BUG()s by error messages
Continue upon netlink deserialization failures
- - - -
-
-
-
2025-05-21
Phil Sutter
New
[nft,2/2,v2] tests/shell: have .json-nft dumps prettified to wrap lines
Untitled series #385629
- - - -
-
-
-
2023-12-07
Thomas Haller
New
[nft,2/2] evaluate: restrict allowed subtypes of concatenations
[nft,1/2] evaluate: rename recursion counter to recursion.binop
- - - -
-
-
-
2025-04-02
Florian Westphal
New
[nft,2/4] netlink: Pass netlink_ctx to netlink_delinearize_setelem()
Continue upon netlink deserialization failures
- - - -
-
-
-
2025-05-21
Phil Sutter
New
[nft,2/5] datatype: don't clone static name/desc strings for datatype
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,3/4] netlink: Keep going after set element parsing failures
Continue upon netlink deserialization failures
- - - -
-
-
-
2025-05-21
Phil Sutter
New
[nft,3/5] datatype: don't clone datatype in set_datatype_alloc() if byteorder already matches
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,4/4] cache: Tolerate object deserialization failures
Continue upon netlink deserialization failures
- - - -
-
-
-
2025-05-21
Phil Sutter
New
[nft,4/5] datatype: extend set_datatype_alloc() to change size
more various cleanups related to struct datatype
- - - -
-
-
-
2023-09-27
Thomas Haller
New
[nft,5/9] mnl: Support simple wildcards in netdev hooks
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,6/9] parser_bison: Accept ASTERISK_STRING in flowtable_expr_member
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,7/9] tests: shell: Adjust to ifname-based flowtables
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,8/9] tests: monitor: Support running external commands
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,9/9] monitor: Support NFT_MSG_(NEW|DEL)DEV events
Support wildcard netdev hooks and events
- - - -
-
-
-
2024-10-02
Phil Sutter
New
[nft,RFC] table: Embed creating nft version into userdata
[nft,RFC] table: Embed creating nft version into userdata
- - - -
-
-
-
2025-05-12
Phil Sutter
New
[nft,v2,1/2] evaluate: rename recursion counter to recursion.binop
[nft,v2,1/2] evaluate: rename recursion counter to recursion.binop
- - - -
-
-
-
2025-06-06
Florian Westphal
New
[nft,v2,1/5] build: add basic "check-{local,more,all}" and "build-all" make targets
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,2/2] evaluate: restrict allowed subtypes of concatenations
[nft,v2,1/2] evaluate: rename recursion counter to recursion.binop
- - - -
-
-
-
2025-06-06
Florian Westphal
New
[nft,v2,2/5] build: add `make check-build` to run `./tests/build/run-tests.sh`
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,3/5] build: add `make check-tree` to check consistency of source tree
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,4/5] build: cleanup if-blocks for conditional compilation in "Makefile.am"
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v2,5/5] tests/unit: add unit tests for libnftables
add infrastructure for unit tests
- - - -
-
-
-
2023-11-05
Thomas Haller
New
[nft,v5,2/8] netlink_delinearize: refactor stmt_payload_binop_postprocess
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,3/8] netlink_delinearize: add support for processing variable payload statement arguments
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,4/8] evaluate: prevent nested byte-order conversions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,5/8] evaluate: preserve existing binop properties
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,7/8] parser_json: allow RHS mark and payload expressions
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft,v5,8/8] tests: add tests for binops with variable RHS operands
Bitwise boolean operations with variable RHS operands
- - - -
-
-
-
2023-05-28
Jeremy Sowden
Under Review
[nft] evaluate: fix crash when set name is null
[nft] evaluate: fix crash when set name is null
- - - -
-
-
-
2025-06-06
Florian Westphal
New
[nft] evalute: don't BUG on unexpected base datatype
[nft] evalute: don't BUG on unexpected base datatype
- - - -
-
-
-
2025-06-13
Florian Westphal
New
[nft] limit: Support arbitrary unit values
[nft] limit: Support arbitrary unit values
- - - -
-
-
-
2024-04-13
Phil Sutter
New
[nft] src: add conntrack information to trace monitor mode
[nft] src: add conntrack information to trace monitor mode
- - - -
-
-
-
2025-05-08
Florian Westphal
New
[nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
[nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
- 1 - -
-
-
-
2025-06-05
Florian Westphal
New
[nft] src: use constant range expression for interval+concatenation sets
[nft] src: use constant range expression for interval+concatenation sets
- - - -
-
-
-
2025-06-11
Pablo Neira Ayuso
New
[nftables,v3] tools: add a systemd unit for static rulesets
[nftables,v3] tools: add a systemd unit for static rulesets
1 - - -
-
-
-
2025-04-17
Jan Engelhardt
New
[nftables] include: fix for musl with iptables v1.8.11
[nftables] include: fix for musl with iptables v1.8.11
- - - -
-
-
-
2024-12-19
Alyssa Ross
New
[v11,nf-next,1/2] net: pppoe: avoid zero-length arrays in struct pppoe_hdr
Add nf_flow_encap_push() for xmit direct
- - 2 -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,1/2] netfilter: bridge: Add conntrack double vlan and pppoe
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - 1 -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,1/3] netfilter: nft_flow_offload: Add DEV_PATH_MTK_WDMA to nft_dev_path_info()
netfilter: fastpath fixes
- - 1 -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,1/6] bridge: Add filling forward path from port to port
netfilter: Add bridge-fastpath
1 - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,2/2] netfilter: nf_flow_table_offload: Add nf_flow_encap_push() for xmit direct
Add nf_flow_encap_push() for xmit direct
- - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,2/2] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,2/3] bridge: No DEV_PATH_BR_VLAN_UNTAG_HW for dsa foreign
netfilter: fastpath fixes
1 - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,2/6] net: core: dev: Add dev_fill_bridge_path()
netfilter: Add bridge-fastpath
- - 1 -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,3/3] bridge: Introduce DEV_PATH_BR_VLAN_KEEP_HW
netfilter: fastpath fixes
- - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,3/6] netfilter :nf_flow_table_offload: Add nf_flow_rule_bridge()
netfilter: Add bridge-fastpath
- - 1 -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,4/6] netfilter: nf_flow_table_inet: Add nf_flowtable_type flowtable_bridge
netfilter: Add bridge-fastpath
- - 1 -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,5/6] netfilter: nft_flow_offload: Add NFPROTO_BRIDGE to validate
netfilter: Add bridge-fastpath
- - 1 -
-
-
-
2025-04-08
Eric Woudstra
New
[v11,nf-next,6/6] netfilter: nft_flow_offload: Add bridgeflow to nft_flow_offload_eval()
netfilter: Add bridge-fastpath
- - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v2,1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
[v2,1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
1 - - -
-
-
-
2025-05-26
Lance Yang
New
[v2,4/5] ipvs: ip_vs_conn_expire_now: Rename del_timer in comment
Untitled series #452555
- - - -
-
-
-
2025-04-14
WangYuli
New
[v2,libnftnl] set: dump set backend name (hash, rbtree...) and elem count, if available
[v2,libnftnl] set: dump set backend name (hash, rbtree...) and elem count, if available
- - - -
-
-
-
2025-04-08
Florian Westphal
New
[v2,nf-next,1/3] netfilter: flow: Add bridge_vid member
flow offload teardown when layer 2 roaming
- - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v2,nf-next,2/3] netfilter: nf_flow_table_core: teardown direct xmit when destination changed
flow offload teardown when layer 2 roaming
- - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v2,nf-next,3/3] netfilter: nf_flow_table_ip: don't follow fastpath when marked teardown
flow offload teardown when layer 2 roaming
- - - -
-
-
-
2025-04-08
Eric Woudstra
New
[v2,nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
[v2,nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
- 1 - -
-
-
-
2025-06-12
Florian Westphal
New
[v2,nftables,1/4] tests/py: prepare for set debug change
src: print count variable in normal set listings
- - - -
-
-
-
2025-04-08
Florian Westphal
New
[v2,nftables,2/4] debug: include kernel set information on cache fill
src: print count variable in normal set listings
- - - -
-
-
-
2025-04-08
Florian Westphal
New
«
1
2
»