Toggle navigation
Patchwork
Netfilter Development
Patches
Bundles
About this project
Login
Register
Mail settings
Show patches with
: Archived =
No
| 30290 patches
Series
Submitter
State
any
Action Required
New
Under Review
Accepted
Rejected
RFC
Not Applicable
Changes Requested
Awaiting Upstream
Superseded
Deferred
Needs Review / ACK
Handled Elsewhere
Search
Archived
No
Yes
Both
Delegate
------
Nobody
jgarzik
arnd
ymano
smfrench
jlayton
tseliot
ogasawara
amitk
awhitcroft
mst
dayangkun
jwboyer
jwboyer
colinking
colinking
azummo
dwmw2
rtg
sconklin
smb
aliguori
bradf
demarchi
ms
bhundven
chbs
kengyu
kadlec
regit
jabk
laforge
laforge
tonyb
alai
zecke
zecke
__damien__
luka
luka
prafulla@marvell.com
cyrus
PeterHuewe
kiho
jow
jow
ypwong
nico
dedeckeh
dedeckeh
yousong
yousong
tomcwarren
mb
patrick_delaunay
mrchuck
vineetg76
computersforpeace
Noltari
Noltari
ee07b291
ldir
ldir
stefanct
zhouhan
carldani
blp
ffainelli
ffainelli
regXboi
bbrezillon
pravin
mkp
jpettit
mkresin
mkresin
thess
thess
fbarrat
fbarrat
phil
linville
jesse
tjaalton
esben
abrodkin
abrodkin
diproiettod
tbot
stephenfin
ajd
darball1
sammj
jogo
jogo
bhelgaas
blogic
blogic
oohal
russellb
ptomsich
agraf
joestringer
mwalle
naveen
pepe2k
pepe2k
tagr
tagr
tagr
pchotard
arj
arj
davem
davem
davem
andmur01
jforissier
amitay
matttbe
pabeni
istokes
aparcar
danielschwierzeck
tytso
martineau
maddy
Ansuel
goliath
mariosix
dcaratti
aserdean
ovsrobot
ovsrobot
XiaoYang
marex
mkorpershoek
tpetazzoni
khem
liwang
robimarko
apritzel
danielhb
groug
npiggin
mmichelson
pareddja
atishp
netdrv
mkubecek
stintel
stintel
jkicinski
cpitchen
dsa
jstancek
pm215
bpf
shettyg
lorpie01
acelan
wigyori
wigyori
apopple
dja
alexhung
lynxis
lynxis
brgl
brgl
peda
akodanev
0andriy
981213
narmstrong
snowpatch_ozlabs
snowpatch_ozlabs
snowpatch_ozlabs
aivanov
atishp04
shemminger
blocktrron
vigneshr
monstr
mraynal
chunkeey
stewart
stewart
kabel
Jaehoon
rfried
ehristev
freenix
arbab
rsalvaterra
adrianschmutzler
ag
hegdevasant
hegdevasant
wsa
jacmet
jagan
metan
prom
ivanhu
bmeng
rmilecki
rmilecki
xypron
sjg
ukleinek
ukleinek
horms
akumar
kevery
wbx
chleroy
trini
apconole
juju
legoater
legoater
legoater
svanheule
rw
rw
abelloni
pablo
pablo
bjonglez
ynezz
xback
xback
richiejp
dangole
dangole
sbabic
sbabic
pevik
jonhunter
aik
acer
forty
amusil
echaudron
Hauke
Hauke
anuppatel
anuppatel
next_ghost
benh
rgrimm
segher
pratyush
passgat
jms
jms
jms
numans
mans0n
ruscur
jk
jk
jk
jk
jmberg
festevam
Andes
ymorin
xuyang
linusw
linusw
tambarus
conchuod
kubu
matthias_bgg
ltpci
stroese
krzk
spectrum
apalos
strlen
strlen
pbrobinson
imaximets
dceara
neocturne
cazzacarna
aldot
TIENFONG
mpe
sfr
galak
ktraynor
arnout
anguy11
nbd
nbd
kcxt
robh
paulus
jm
hs
Apply
«
1
2
3
4
…
302
303
»
Patch
Series
A/F/R/T
S/W/F
Date
Submitter
Delegate
State
[v2] tests: shell: Verify limit statement with new test case.
[v2] tests: shell: Verify limit statement with new test case.
- - - -
-
-
-
2025-06-20
Yi Chen
New
tests: shell: Verify limit statement with new test case.
tests: shell: Verify limit statement with new test case.
- - - -
-
-
-
2025-06-20
Yi Chen
New
netfilter: ipset: fix typo in hash size macro
netfilter: ipset: fix typo in hash size macro
- - - -
-
-
-
2025-06-20
RubenKelevra
New
netfilter: ipset: fix typo in hash size macro
netfilter: ipset: fix typo in hash size macro
- - - -
-
-
-
2025-06-19
RubenKelevra
New
[conntrack-tools,v2,2/2] conntrack: introduce --labelmap option to specify connlabel.conf path
conntrack: introduce --labelmap option to specify connlabel.conf path
- - - -
-
-
-
2025-06-17
Christoph Heiss
New
[conntrack-tools,v2,1/2] conntrack: move label parsing after argument parsing
conntrack: introduce --labelmap option to specify connlabel.conf path
- - - -
-
-
-
2025-06-17
Christoph Heiss
New
tests: shell: Add a test case to verify the limit statement.
tests: shell: Add a test case to verify the limit statement.
- - - -
-
-
-
2025-06-17
Yi Chen
New
[v3,nf-next,3/3] netfilter: nf_flow_table_ip: don't follow fastpath when marked teardown
flow offload teardown when layer 2 roaming
- - - -
-
-
-
2025-06-17
Eric Woudstra
New
[v3,nf-next,2/3] netfilter: nf_flow_table_core: teardown direct xmit when destination changed
flow offload teardown when layer 2 roaming
- - - -
-
-
-
2025-06-17
Eric Woudstra
New
[v3,nf-next,1/3] netfilter: flow: Add bridge_vid member
flow offload teardown when layer 2 roaming
- - - -
-
-
-
2025-06-17
Eric Woudstra
New
[RFC,v2,nf-next] selftests: netfilter: Add bridge_fastpath.sh
[RFC,v2,nf-next] selftests: netfilter: Add bridge_fastpath.sh
- - - -
-
-
-
2025-06-17
Eric Woudstra
New
[v12,nf-next,2/2] netfilter: nft_chain_filter: Add bridge double vlan and pppoe
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - - -
-
-
-
2025-06-17
Eric Woudstra
New
[v12,nf-next,1/2] netfilter: bridge: Add conntrack double vlan and pppoe
conntrack: bridge: add double vlan, pppoe and pppoe-in-q
- - - -
-
-
-
2025-06-17
Eric Woudstra
New
[nft,3/3] src: use EXPR_RANGE_VALUE in interval maps
memory reduction in concatenation and maps
- - - -
-
-
-
2025-06-16
Pablo Neira Ayuso
New
[nft,2/3] expression: constant range is not a singleton
memory reduction in concatenation and maps
- - - -
-
-
-
2025-06-16
Pablo Neira Ayuso
New
[nft,1/3,v2] src: use constant range expression for interval+concatenation sets
memory reduction in concatenation and maps
- - - -
-
-
-
2025-06-16
Pablo Neira Ayuso
New
[v2,1/1] asn: fix missing quiet checks in xt_asn_build
[v2,1/1] asn: fix missing quiet checks in xt_asn_build
- - - -
-
-
-
2025-06-15
Philip Prindeville
New
[1/1] asn: fix missing quiet checks in xt_asn_build
[1/1] asn: fix missing quiet checks in xt_asn_build
- - - -
-
-
-
2025-06-15
Philip Prindeville
New
[nft,5/5] parser_bison: allow delete command with map via handle
assorted updates and fixes
- 1 - -
-
-
-
2025-06-15
Pablo Neira Ayuso
New
[nft,4/5] parser_bison: only reset by name is supported by now
assorted updates and fixes
- 1 - -
-
-
-
2025-06-15
Pablo Neira Ayuso
New
[nft,3/5] cache: pass name to cache_add()
assorted updates and fixes
- - - -
-
-
-
2025-06-15
Pablo Neira Ayuso
New
[nft,2/5] cache: assert name is non-nul when looking up
assorted updates and fixes
- 1 - -
-
-
-
2025-06-15
Pablo Neira Ayuso
New
[nft,1/5] rule: skip fuzzy lookup if object name is not available
assorted updates and fixes
- 3 - -
-
-
-
2025-06-15
Pablo Neira Ayuso
New
[nf-next,v2,2/2] netfilter: nf_tables: Reintroduce shortened deletion notifications
netfilter: nf_tables: Fix for extra data in delete notifications
- - - -
-
-
-
2025-06-13
Phil Sutter
New
[nf-next,v2,1/2] netfilter: nf_tables: Drop dead code from fill_*_info routines
netfilter: nf_tables: Fix for extra data in delete notifications
- 1 - -
-
-
-
2025-06-13
Phil Sutter
New
[conntrack-tools] conntrack: introduce --labelmap option to specify connlabel.conf path
[conntrack-tools] conntrack: introduce --labelmap option to specify connlabel.conf path
- - - -
-
-
-
2025-06-13
Christoph Heiss
New
[nft] netlink: Avoid crash upon missing NFTNL_OBJ_CT_TIMEOUT_ARRAY attribute
[nft] netlink: Avoid crash upon missing NFTNL_OBJ_CT_TIMEOUT_ARRAY attribute
- 1 1 -
-
-
-
2025-06-12
Phil Sutter
Accepted
[nf-next,v2] netfilter: nf_tables: Fix for extra data in delete notifications
[nf-next,v2] netfilter: nf_tables: Fix for extra data in delete notifications
- 1 - -
-
-
-
2025-06-12
Phil Sutter
New
[v2,nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
[v2,nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
- 1 - -
-
-
-
2025-06-12
Florian Westphal
New
[nf-next] netfilter: nf_tables: Fix for extra data in delete notifications
[nf-next] netfilter: nf_tables: Fix for extra data in delete notifications
- 1 - -
-
-
-
2025-06-12
Phil Sutter
New
[nf-next,3/3] netfilter: nf_tables: Extend chain/flowtable notifications
netfilter: nf_tables: Report found devices when creating a netdev hook
- - - -
-
-
-
2025-06-12
Phil Sutter
New
[nf-next,2/3] netfilter: nf_tables: Support enqueueing device notifications
netfilter: nf_tables: Report found devices when creating a netdev hook
- - - -
-
-
-
2025-06-12
Phil Sutter
New
[nf-next,1/3] netfilter: nf_tables: commit_notify: Support varying groups
netfilter: nf_tables: Report found devices when creating a netdev hook
- - - -
-
-
-
2025-06-12
Phil Sutter
New
[nft,7/7] tests: py: Properly fix JSON equivalents for netdev/reject.t
Misc fixes
- 2 - -
-
-
-
2025-06-12
Phil Sutter
Accepted
[nft,6/7] tests: shell: Adjust to ifname-based hooks
Misc fixes
- - - -
-
-
-
2025-06-12
Phil Sutter
Accepted
[nft,5/7] tests: monitor: Fix for single flag array avoidance
Misc fixes
- 1 - -
-
-
-
2025-06-12
Phil Sutter
Accepted
[nft,4/7] json: Dump flowtable hook spec only if present
Misc fixes
- - - -
-
-
-
2025-06-12
Phil Sutter
Accepted
[nft,3/7] monitor: Correctly print flowtable updates
Misc fixes
- 1 - -
-
-
-
2025-06-12
Phil Sutter
Accepted
[nft,2/7] netlink: Do not allocate a bogus flowtable priority expr
Misc fixes
- 1 - -
-
-
-
2025-06-12
Phil Sutter
Accepted
[nft,1/7] netlink: Fix for potential crash parsing a flowtable
Misc fixes
- 1 - -
-
-
-
2025-06-12
Phil Sutter
Accepted
[nft] src: use constant range expression for interval+concatenation sets
[nft] src: use constant range expression for interval+concatenation sets
- - - -
-
-
-
2025-06-11
Pablo Neira Ayuso
New
[nft,v2,2/2] evaluate: restrict allowed subtypes of concatenations
[nft,v2,1/2] evaluate: rename recursion counter to recursion.binop
- - - -
-
-
-
2025-06-06
Florian Westphal
New
[nft,v2,1/2] evaluate: rename recursion counter to recursion.binop
[nft,v2,1/2] evaluate: rename recursion counter to recursion.binop
- - - -
-
-
-
2025-06-06
Florian Westphal
New
[nft] evaluate: fix crash when set name is null
[nft] evaluate: fix crash when set name is null
- - - -
-
-
-
2025-06-06
Florian Westphal
New
[nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
[nft] src: move BASECHAIN flag toggle to netlink linearize code for device update
- 1 - -
-
-
-
2025-06-05
Florian Westphal
New
[nft] doc: Basic documentation of anonymous chains
[nft] doc: Basic documentation of anonymous chains
- - - -
-
-
-
2025-06-04
Phil Sutter
Accepted
[7/7,nft] tests: add tunnel shell and python tests
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[6/7,nft] tunnel: add tunnel object and statement json support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[5/7,nft] tunnel: add geneve support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[4/7,nft] tunnel: add vxlan support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[3/7,nft] src: add tunnel statement and expression support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[2/7,nft] tunnel: add erspan support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[1/7,nft] src: add tunnel template support
Add nftables tunnel expr, stmt and object support
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[2/2,libnftnl,v2] tunnel: add support to geneve options
[1/2,libnftnl,v2] src: use uint64_t for flags fields
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[1/2,libnftnl,v2] src: use uint64_t for flags fields
[1/2,libnftnl,v2] src: use uint64_t for flags fields
- - - -
-
-
-
2025-05-27
Fernando Fernandez Mancera
New
[v2,1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
[v2,1/1] netfilter: load nf_log_syslog on enabling nf_conntrack_log_invalid
1 - - -
-
-
-
2025-05-26
Lance Yang
New
ipset: Modify pernet_operations check
ipset: Modify pernet_operations check
- - - -
-
-
-
2025-05-23
Mike Pagano
New
[nf-next,3/3] selftests: netfilter: nft_concat_range.sh: add datapath check for map fill bug
netfilter: nf_set_pipapo_avx2: fix initial map fill
- - - -
-
-
-
2025-05-23
Florian Westphal
New
[nf-next,2/3] selftests: netfilter: nft_concat_range.sh: prefer per element counters for testing
netfilter: nf_set_pipapo_avx2: fix initial map fill
- - - -
-
-
-
2025-05-23
Florian Westphal
New
[nf-next,1/3] netfilter: nf_set_pipapo_avx2: fix initial map fill
netfilter: nf_set_pipapo_avx2: fix initial map fill
- 1 - -
-
-
-
2025-05-23
Florian Westphal
New
[v2] selftests: net: fix spelling and grammar mistakes
[v2] selftests: net: fix spelling and grammar mistakes
- - 2 -
-
-
-
2025-05-23
Praveen Balakrishnan
New
[nf-next,v2] netfilter: conntrack: remove DCCP protocol support
[nf-next,v2] netfilter: conntrack: remove DCCP protocol support
- - 1 -
-
-
-
2025-05-22
Pablo Neira Ayuso
New
[libnftnl,v2] trace: add support for TRACE_CT information
[libnftnl,v2] trace: add support for TRACE_CT information
- - - -
-
-
-
2025-05-22
Florian Westphal
New
[nf-next,v2,2/2] netfilter: nf_tables: add packets conntrack state to debug trace info
netfilter: nf_tables: include conntrack state in trace messages
- - - -
-
-
-
2025-05-22
Florian Westphal
Accepted
[nf-next,v2,1/2] netfilter: conntrack: make nf_conntrack_id callable without a module dependency
netfilter: nf_tables: include conntrack state in trace messages
- - - -
-
-
-
2025-05-22
Florian Westphal
Accepted
[V2] netfilter: nf_conntrack: table full detailed log
[V2] netfilter: nf_conntrack: table full detailed log
- - - -
-
-
-
2025-05-22
lvxiafei
New
[nf-next,v7,13/13] selftests: netfilter: Torture nftables netdev hooks
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,12/13] netfilter: nf_tables: Add notifications for hook changes
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,11/13] netfilter: nf_tables: Support wildcard netdev hook specs
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,10/13] netfilter: nf_tables: Sort labels in nft_netdev_hook_alloc()
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,09/13] netfilter: nf_tables: Handle NETDEV_CHANGENAME events
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,08/13] netfilter: nf_tables: Wrap netdev notifiers
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,07/13] netfilter: nf_tables: Respect NETDEV_REGISTER events
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,06/13] netfilter: nf_tables: Prepare for handling NETDEV_REGISTER events
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,05/13] netfilter: nf_tables: Have a list of nf_hook_ops in nft_hook
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,04/13] netfilter: nf_tables: Pass nf_hook_ops to nft_unregister_flowtable_hook()
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,03/13] netfilter: nf_tables: Introduce nft_register_flowtable_ops()
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,02/13] netfilter: nf_tables: Introduce nft_hook_find_ops{,_rcu}()
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nf-next,v7,01/13] netfilter: nf_tables: Introduce functions freeing nft_hook objects
Dynamic hook interface binding part 2
- - - -
-
-
-
2025-05-21
Phil Sutter
Accepted
[nft,4/4] cache: Tolerate object deserialization failures
Continue upon netlink deserialization failures
- - - -
-
-
-
2025-05-21
Phil Sutter
New
[nft,3/4] netlink: Keep going after set element parsing failures
Continue upon netlink deserialization failures
- - - -
-
-
-
2025-05-21
Phil Sutter
New
[nft,2/4] netlink: Pass netlink_ctx to netlink_delinearize_setelem()
Continue upon netlink deserialization failures
- - - -
-
-
-
2025-05-21
Phil Sutter
New
[nft,1/4] netlink_delinearize: Replace some BUG()s by error messages
Continue upon netlink deserialization failures
- - - -
-
-
-
2025-05-21
Phil Sutter
New
[nf] netfilter: nft_tunnel: fix geneve_opt dump
[nf] netfilter: nft_tunnel: fix geneve_opt dump
- 1 - -
-
-
-
2025-05-21
Fernando Fernandez Mancera
Accepted
[nf-next,v2,5/5] selftests: netfilter: nft_fib.sh: add type and oif tests with and without VRFs
netfilter: resolve fib+vrf issues
- - - -
-
-
-
2025-05-21
Florian Westphal
Accepted
[nf-next,v2,4/5] netfilter: nf_tables: nft_fib: consistent l3mdev handling
netfilter: resolve fib+vrf issues
- 1 - -
-
-
-
2025-05-21
Florian Westphal
Accepted
[nf-next,v2,3/5] netfilter: nf_tables: nft_fib_ipv6: fix VRF ipv4/ipv6 result discrepancy
netfilter: resolve fib+vrf issues
- 1 - -
-
-
-
2025-05-21
Florian Westphal
Accepted
[nf-next,v2,2/5] selftests: netfilter: move fib vrf test to nft_fib.sh
netfilter: resolve fib+vrf issues
- - - -
-
-
-
2025-05-21
Florian Westphal
Accepted
[nf-next,v2,1/5] selftests: netfilter: nft_fib.sh: add 'type' mode tests
netfilter: resolve fib+vrf issues
- - - -
-
-
-
2025-05-21
Florian Westphal
Accepted
[nf-next,v2,4/4] netfilter: nf_tables: add support for validating incremental ruleset updates
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,3/4] netfilter: nf_tables: use new binding infrastructure
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,2/4] netfilter: nf_tables: add new binding infrastructure
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
[nf-next,v2,1/4] netfilter: nf_tables: add infrastructure for chain validation on updates
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,2/2] netfilter: nf_tables: honor validation state in preparation phase
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
- 1 1 -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
[nf-next,v2,1/2] netfilter: nf_tables: honor EINTR in ruleset validation from commit/abort path
1 1 - -
-
-
-
2025-05-20
Pablo Neira Ayuso
New
[v5,2/2] Add test for nft_max_table_jumps_netns sysctl
[v5,1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate
- - - -
-
-
-
2025-05-20
Shaun Brady
New
[v5,1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate
[v5,1/2] netfilter: nf_tables: Implement jump limit for nft_table_validate
1 - - -
-
-
-
2025-05-20
Shaun Brady
New
[nft] tests: shell: check if kernel supports for cgroupsv2 matching
[nft] tests: shell: check if kernel supports for cgroupsv2 matching
- - - -
-
-
-
2025-05-20
Pablo Neira Ayuso
Accepted
[nft] tests: shell: skip egress in netdev chain release path test
[nft] tests: shell: skip egress in netdev chain release path test
- - - -
-
-
-
2025-05-19
Pablo Neira Ayuso
Accepted
[nft,2/2] netlink: Catch unknown types when deserializing objects
Sanitize two error conditions in netlink code
- 1 - -
-
-
-
2025-05-16
Phil Sutter
Accepted
«
1
2
3
4
…
302
303
»