Show patches with: Submitter = Florian Westphal       |   3450 patches
« 1 2 3 434 35 »
Patch Series A/F/R/T S/W/F Date Submitter Delegate State
[nf-next,1/7] netfilter: nf_tables: avoid false-positive lockdep splat on rule deletion netfilter: nf_tables: avoid PROVE_RCU_LIST splats - 1 - 1 --- 2024-10-25 Florian Westphal Changes Requested
[nft] src: allow to map key to nfqueue number [nft] src: allow to map key to nfqueue number - - - - --- 2024-10-25 Florian Westphal Accepted
[net] selftests: netfilter: nft_flowtable.sh: make first pass deterministic [net] selftests: netfilter: nft_flowtable.sh: make first pass deterministic - - 1 - --- 2024-10-22 Florian Westphal Accepted
[nft] tests: shell: don't rely on writable test directory [nft] tests: shell: don't rely on writable test directory - - - - --- 2024-10-22 Florian Westphal Accepted
[nf-next,v3,5/5] netfilter: nf_tables: allocate element update information dynamically netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-16 Florian Westphal Superseded
[nf-next,v3,4/5] netfilter: nf_tables: switch trans_elem to real flex array netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-16 Florian Westphal Superseded
[nf-next,v3,3/5] netfiler: nf_tables: preemitve fix for audit failure netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-16 Florian Westphal Superseded
[nf-next,v3,2/5] netfilter: nf_tables: prepare for multiple elements in nft_trans_elem structure netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-16 Florian Westphal Superseded
[nf-next,v3,1/5] netfilter: nf_tables: add nft_trans_commit_list_add_elem helper netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-16 Florian Westphal Superseded
[nf-next,v2,5/5] netfilter: nf_tables: allocate element update information dynamically netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-11 Florian Westphal Changes Requested
[nf-next,v2,4/5] netfilter: nf_tables: switch trans_elem to real flex array netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-11 Florian Westphal Changes Requested
[nf-next,v2,3/5] netfilter: nf_tables: prepare for multiple elements in nft_trans_elem structure netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-11 Florian Westphal Changes Requested
[nf-next,v2,2/5] netfilter: nf_tables: add nft_trans_commit_list_add_elem helper netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-11 Florian Westphal Changes Requested
[nf-next,v2,1/5] netfilter: nf_tables: prefer nft_trans_elem_alloc helper netfilter: nf_tables: reduce set element transaction size - - - - --- 2024-10-11 Florian Westphal Changes Requested
[nft] tests: shell: fix spurious dump failure in vmap timeout test [nft] tests: shell: fix spurious dump failure in vmap timeout test - 1 - - --- 2024-10-11 Florian Westphal Accepted
[nf] netfilter: bpf: must hold reference on net namespace [nf] netfilter: bpf: must hold reference on net namespace - 1 1 - --- 2024-10-10 Florian Westphal Accepted
[nft] doc: extend description of fib expression [nft] doc: extend description of fib expression - - - - --- 2024-10-10 Florian Westphal Changes Requested
[nf,2/2] selftests: netfilter: conntrack_vrf.sh: add fib test case [nf,1/2] netfilter: fib: check correct rtable in vrf setups - - - - --- 2024-10-09 Florian Westphal Accepted
[nf,1/2] netfilter: fib: check correct rtable in vrf setups [nf,1/2] netfilter: fib: check correct rtable in vrf setups - 1 - - --- 2024-10-09 Florian Westphal Accepted
[nft,5/5] sets: inform user when set definition contains unknown attributes [libnftnl,1/5] expr: add and use incomplete tag - - - - --- 2024-10-07 Florian Westphal Changes Requested
[nft,4/5] netlink: tell user if libnftnl detected unknown attributes/features [libnftnl,1/5] expr: add and use incomplete tag - - - - --- 2024-10-07 Florian Westphal Changes Requested
[libnftnl,3/5] libnftnl: add api to query dissection state [libnftnl,1/5] expr: add and use incomplete tag - - - - --- 2024-10-07 Florian Westphal Changes Requested
[libnftnl,2/5] sets: add and use incomplete tag [libnftnl,1/5] expr: add and use incomplete tag - - - - --- 2024-10-07 Florian Westphal Changes Requested
[libnftnl,1/5] expr: add and use incomplete tag [libnftnl,1/5] expr: add and use incomplete tag - - - - --- 2024-10-07 Florian Westphal Changes Requested
[nf,v3] netfilter: xtables: avoid NFPROTO_UNSPEC where needed [nf,v3] netfilter: xtables: avoid NFPROTO_UNSPEC where needed - 1 - - --- 2024-10-07 Florian Westphal Accepted
[nf,v2] netfilter: xtables: avoid NFPROTO_UNSPEC where needed [nf,v2] netfilter: xtables: avoid NFPROTO_UNSPEC where needed - 1 - - --- 2024-10-04 Florian Westphal Changes Requested
[nf] netfilter: xt_cluster: restrict to ip/ip6tables [nf] netfilter: xt_cluster: restrict to ip/ip6tables - 1 - 1 --- 2024-10-03 Florian Westphal Superseded
[nf-next,4/4] netfilter: nf_tables: use skb_drop_reason netfilter: use skb_drop_reason in more places - - - - --- 2024-10-02 Florian Westphal Accepted
[nf-next,3/4] netfilter: nf_nat: use skb_drop_reason netfilter: use skb_drop_reason in more places - - - - --- 2024-10-02 Florian Westphal Accepted
[nf-next,2/4] netfilter: xt_nat: drop packet earlier netfilter: use skb_drop_reason in more places - - - - --- 2024-10-02 Florian Westphal Accepted
[nf-next,1/4] netfilter: xt_nat: compact nf_nat_setup_info calls netfilter: use skb_drop_reason in more places - - - - --- 2024-10-02 Florian Westphal Accepted
[nf-next,7/7] netfilter: nft_flow_offload: do not remove flowtable entry for fin packets netfilter: rework conntrack/flowtable interaction - - - - --- 2024-09-24 Florian Westphal Superseded
[nf-next,6/7] netfilter: nft_flow_offload: never grow the timeout when moving packets back to slowp… netfilter: rework conntrack/flowtable interaction - - - - --- 2024-09-24 Florian Westphal Superseded
[nf-next,5/7] netfilter: conntrack: rework offload nf_conn timeout extension logic netfilter: rework conntrack/flowtable interaction - - - - --- 2024-09-24 Florian Westphal Superseded
[nf-next,4/7] netfilter: flowtable: prefer plain nf_ct_refresh for setting initial timeout netfilter: rework conntrack/flowtable interaction - - - - --- 2024-09-24 Florian Westphal Superseded
[nf-next,3/7] netfilter: conntrack: remove skb argument from nf_ct_refresh netfilter: rework conntrack/flowtable interaction - - - - --- 2024-09-24 Florian Westphal Superseded
[nf-next,2/7] netfilter: nft_flow_offload: update tcp state flags under lock netfilter: rework conntrack/flowtable interaction - 1 - - --- 2024-09-24 Florian Westphal Superseded
[nf-next,1/7] netfilter: nft_flow_offload: clear tcp MAXACK flag before moving to slowpath netfilter: rework conntrack/flowtable interaction - - - - --- 2024-09-24 Florian Westphal Superseded
[libnftnl] expr: dynset: validate expressions are of nested type [libnftnl] expr: dynset: validate expressions are of nested type - - - - --- 2024-09-22 Florian Westphal Accepted
[nf] kselftest: add test for nfqueue induced conntrack race [nf] kselftest: add test for nfqueue induced conntrack race - - - - --- 2024-09-18 Florian Westphal Accepted
[nf] netfilter: nfnetlink_queue: remove old clash resolution logic [nf] netfilter: nfnetlink_queue: remove old clash resolution logic - - - 1 --- 2024-09-18 Florian Westphal Accepted
[nft] tests: shell: more ransomization for timeout parameter [nft] tests: shell: more ransomization for timeout parameter - - - - --- 2024-09-14 Florian Westphal Accepted
[nf-next,5/5] netfilter: nf_tables: allocate element update information dynamically netfilter: nf_tables: reduce set element - - - - --- 2024-09-11 Florian Westphal strlen Superseded
[nf-next,4/5] netfilter: nf_tables: switch trans_elem to real flex array netfilter: nf_tables: reduce set element - - - - --- 2024-09-11 Florian Westphal strlen Superseded
[nf-next,3/5] netfilter: nf_tables: prepare for multiple elements in nft_trans_elem structure netfilter: nf_tables: reduce set element - - - - --- 2024-09-11 Florian Westphal strlen Superseded
[nf-next,2/5] netfilter: nf_tables: add nft_trans_commit_list_add_elem helper netfilter: nf_tables: reduce set element - - - - --- 2024-09-11 Florian Westphal strlen Superseded
[nf-next,1/5] netfilter: nf_tables: prefer nft_trans_elem_alloc helper netfilter: nf_tables: reduce set element - - - - --- 2024-09-11 Florian Westphal strlen Superseded
[nft] tests: py: fix up udp csum fixup output [nft] tests: py: fix up udp csum fixup output - 1 - - --- 2024-09-11 Florian Westphal strlen Accepted
[nf-next,3/3] selftests: netfilter: add reverse-clash resolution test case netfilter: conntrack: clash resolution for reverse collisions - - - - --- 2024-09-10 Florian Westphal Accepted
[nf-next,2/3] netfilter: conntrack: add clash resolution for reverse collisions netfilter: conntrack: clash resolution for reverse collisions - - - - --- 2024-09-10 Florian Westphal Accepted
[nf-next,1/3] netfilter: nf_nat: don't try nat source port reallocation for reverse dir clash netfilter: conntrack: clash resolution for reverse collisions - - - - --- 2024-09-10 Florian Westphal Accepted
[nft] tests: shell: add test case for timeout updates [nft] tests: shell: add test case for timeout updates - - - - --- 2024-09-09 Florian Westphal strlen Accepted
[nft] tests: shell: extend vmap test with updates [nft] tests: shell: extend vmap test with updates - - - - --- 2024-09-09 Florian Westphal strlen Accepted
[nf,v2,2/2] netfilter: nft_socket: make cgroupsv2 matching work with namespaces Untitled series #422862 - 1 - - --- 2024-09-07 Florian Westphal Accepted
[nf,2/2] netfilter: nft_socket: make cgroupsv2 matching work with namespaces [nf,1/2] netfilter: nft_socket: fix sk refcount leaks - 1 - - --- 2024-09-05 Florian Westphal Changes Requested
[nf,1/2] netfilter: nft_socket: fix sk refcount leaks [nf,1/2] netfilter: nft_socket: fix sk refcount leaks - 1 - - --- 2024-09-05 Florian Westphal Accepted
[v2,net-next] netlink: specs: nftables: allow decode of default firewalld ruleset [v2,net-next] netlink: specs: nftables: allow decode of default firewalld ruleset - - 1 - --- 2024-09-02 Florian Westphal Handled Elsewhere
[net-next] netlink: specs: nftables: allow decode of default firewalld ruleset [net-next] netlink: specs: nftables: allow decode of default firewalld ruleset - - 1 - --- 2024-09-02 Florian Westphal kadlec Changes Requested
[net-next] selftests: netfilter: nft_queue.sh: fix spurious timeout on debug kernel [net-next] selftests: netfilter: nft_queue.sh: fix spurious timeout on debug kernel - 1 - - --- 2024-08-30 Florian Westphal Handled Elsewhere
[nf-next] netfilter: nf_tables: drop unused 3rd argument from validate callback ops [nf-next] netfilter: nf_tables: drop unused 3rd argument from validate callback ops - - - - --- 2024-08-28 Florian Westphal Accepted
[net-next] selftests: netfilter: nft_queue.sh: reduce test file size for debug build [net-next] selftests: netfilter: nft_queue.sh: reduce test file size for debug build 1 1 - - --- 2024-08-27 Florian Westphal Awaiting Upstream
[nft,2/2] src: mnl: always dump all netdev hooks if no interface name was given mnl: query netdevices for in/egress hooks - - - - --- 2024-08-20 Florian Westphal Accepted
[nft,1/2] src: mnl: prepare for listing all device netdev device hooks mnl: query netdevices for in/egress hooks - - - - --- 2024-08-20 Florian Westphal Accepted
[nf-next,3/3] netfilter: nf_tables: don't initialize registers in nft_do_chain() netfilter: nf_tables: reject loads from - - - - --- 2024-08-20 Florian Westphal Accepted
[nf-next,2/3] netfilter: nf_tables: allow loads only when register is initialized netfilter: nf_tables: reject loads from - - - - --- 2024-08-20 Florian Westphal Accepted
[nf-next,1/3] netfilter: nf_tables: pass context structure to nft_parse_register_load netfilter: nf_tables: reject loads from - - - - --- 2024-08-20 Florian Westphal Accepted
[nft] optimize: compare meta inner_desc pointers too [nft] optimize: compare meta inner_desc pointers too - - - - --- 2024-08-08 Florian Westphal Accepted
[nf,v2,2/2] selftests: netfilter: add test for br_netfilter+conntrack+queue combination Untitled series #418633 - - - - --- 2024-08-08 Florian Westphal Accepted
[nf,2/2] selftests: netfilter: add test for br_netfilter+conntrack+queue combination netfilter: disable support for queueing cloned conntrack entries - - - - --- 2024-08-07 Florian Westphal Changes Requested
[nf,1/2] netfilter: nf_queue: drop packets with cloned unconfirmed conntracks netfilter: disable support for queueing cloned conntrack entries - 1 - - --- 2024-08-07 Florian Westphal Accepted
[nft,v2,5/5] doc: add documentation about list hooks feature src: mnl: rework list hooks infra - - - - --- 2024-07-31 Florian Westphal Accepted
[nft,v2,4/5] src: add egress support for 'list hooks' src: mnl: rework list hooks infra - - - - --- 2024-07-31 Florian Westphal Accepted
[nft,v2,3/5] src: drop obsolete hook argument form hook dump functions src: mnl: rework list hooks infra - - - - --- 2024-07-31 Florian Westphal Accepted
[nft,v2,2/5] src: mnl: make family specification more strict when listing src: mnl: rework list hooks infra - - - - --- 2024-07-31 Florian Westphal Accepted
[nft,v2,1/5] src: mnl: clean up hook listing code src: mnl: rework list hooks infra - - - - --- 2024-07-31 Florian Westphal Accepted
[nft,4/4] src: add egress support for 'list hooks' list hooks refactoring - - - - --- 2024-07-26 Florian Westphal Changes Requested
[nft,3/4] src: mnl: clean up hook listing code list hooks refactoring - - - - --- 2024-07-26 Florian Westphal Changes Requested
[nft,2/4] src: remove decnet support list hooks refactoring - - - - --- 2024-07-26 Florian Westphal Accepted
[nft,1/4] doc: add documentation about list hooks feature list hooks refactoring - - - - --- 2024-07-26 Florian Westphal Changes Requested
[nf] netfilter: nft_set_pipapo_avx2: disable softinterrupts [nf] netfilter: nft_set_pipapo_avx2: disable softinterrupts - 1 1 - --- 2024-07-19 Florian Westphal Accepted
[nf] selftests: netfilter: add test case for recent mismatch bug [nf] selftests: netfilter: add test case for recent mismatch bug - - 1 - --- 2024-07-15 Florian Westphal Accepted
[nf] netfilter: nf_set_pipapo: fix initial map fill [nf] netfilter: nf_set_pipapo: fix initial map fill - 1 1 - --- 2024-07-15 Florian Westphal Accepted
[nf] netfilter: nf_tables: prefer nft_chain_validate [nf] netfilter: nf_tables: prefer nft_chain_validate - 1 - - --- 2024-07-11 Florian Westphal Accepted
[nft,3/3] tests: connect chains to hook point [nft,1/3] tests: add more ruleset validation test cases - - - - --- 2024-07-10 Florian Westphal Accepted
[nft,2/3] testcases: test jump to basechain is rejected, even if there is no loop [nft,1/3] tests: add more ruleset validation test cases - - - - --- 2024-07-10 Florian Westphal Accepted
[nft,1/3] tests: add more ruleset validation test cases [nft,1/3] tests: add more ruleset validation test cases - - - - --- 2024-07-10 Florian Westphal Accepted
[nft] libnftables: fix crash when freeing non-malloc'd address [nft] libnftables: fix crash when freeing non-malloc'd address - 1 - - --- 2024-07-10 Florian Westphal Accepted
[nf-next] netfilter: nf_tables: store new sets in dedicated list [nf-next] netfilter: nf_tables: store new sets in dedicated list - 1 - - --- 2024-07-10 Florian Westphal Accepted
[nf] netfilter: nfnetlink_queue: drop bogus WARN_ON [nf] netfilter: nfnetlink_queue: drop bogus WARN_ON - 1 - - --- 2024-07-09 Florian Westphal Accepted
[nf] netfilter: nf_tables: unconditionally flush pending work before notifier [nf] netfilter: nf_tables: unconditionally flush pending work before notifier - 1 - - --- 2024-07-02 Florian Westphal Accepted
[nf-next] selftests: netfilter: nft_queue.sh: sctp coverage [nf-next] selftests: netfilter: nft_queue.sh: sctp coverage - - - - --- 2024-07-02 Florian Westphal Accepted
[RFC,nf-next,4/4] netfilter: nf_tables: don't initialize registers in nft_do_chain() nf_tables: remove explicit register zeroing - - - - --- 2024-06-27 Florian Westphal RFC
[RFC,nf-next,3/4] netfilter: nf_tables: insert register zeroing instructions for dodgy chains nf_tables: remove explicit register zeroing - - - - --- 2024-06-27 Florian Westphal RFC
[RFC,nf-next,2/4] netfilter: nf_tables: allow loads only when register is initialized nf_tables: remove explicit register zeroing - - - - --- 2024-06-27 Florian Westphal RFC
[RFC,nf-next,1/4] netfilter: nf_tables: pass context structure to nft_parse_register_load nf_tables: remove explicit register zeroing - - - - --- 2024-06-27 Florian Westphal RFC
[nf-next] selftests: netfilter: nft_queue.sh: add test for disappearing listener [nf-next] selftests: netfilter: nft_queue.sh: add test for disappearing listener - - - - --- 2024-06-19 Florian Westphal Accepted
[net-next,2/2] net: add and use __skb_get_hash_symmetric_net net: flow dissector: allow explicit passing of netns - - 2 - --- 2024-06-07 Florian Westphal Awaiting Upstream
[net-next,1/2] net: add and use skb_get_hash_net net: flow dissector: allow explicit passing of netns - - 2 - --- 2024-06-07 Florian Westphal Awaiting Upstream
[nf] netfilter: Use flowlabel flow key when re-routing mangled packets [nf] netfilter: Use flowlabel flow key when re-routing mangled packets - 1 - - --- 2024-06-06 Florian Westphal Accepted
[nf] netfilter: nf_reject: init skb->dev for reset packet [nf] netfilter: nf_reject: init skb->dev for reset packet - 1 - - --- 2024-06-04 Florian Westphal Not Applicable
« 1 2 3 434 35 »