Show patches with: Submitter = Pablo Neira Ayuso       |    Archived = No       |   1711 patches
« 1 2 3 417 18 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[net,3/3] netfilter: flowtable: validate vlan header [net,1/3] netfilter: nft_counter: Disable BH in nft_counter_offload_stats(). - - - 181- 2024-08-22 Pablo Neira Ayuso netdev Superseded
[net,2/3] netfilter: nft_counter: Synchronize nft_counter_reset() against reader. [net,1/3] netfilter: nft_counter: Disable BH in nft_counter_offload_stats(). - 1 - 172- 2024-08-22 Pablo Neira Ayuso netdev Superseded
[net,1/3] netfilter: nft_counter: Disable BH in nft_counter_offload_stats(). [net,1/3] netfilter: nft_counter: Disable BH in nft_counter_offload_stats(). - 1 - 172- 2024-08-22 Pablo Neira Ayuso netdev Superseded
[net,0/3] Netfilter fixes for net - - - --- 2024-08-22 Pablo Neira Ayuso netdev Superseded
[net,8/8] netfilter: nf_tables: Add locking for NFT_MSG_GETOBJ_RESET requests [net,1/8] netfilter: allow ipv6 fragments to arrive on different devices - 1 - 172- 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,7/8] netfilter: nf_tables: Introduce nf_tables_getobj_single [net,1/8] netfilter: allow ipv6 fragments to arrive on different devices - 1 - 172- 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,6/8] netfilter: nf_tables: Audit log dump reset after the fact [net,1/8] netfilter: allow ipv6 fragments to arrive on different devices - 1 - 1621 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,5/8] selftests: netfilter: add test for br_netfilter+conntrack+queue combination [net,1/8] netfilter: allow ipv6 fragments to arrive on different devices - - - 163- 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,4/8] netfilter: nf_queue: drop packets with cloned unconfirmed conntracks [net,1/8] netfilter: allow ipv6 fragments to arrive on different devices - - - 172- 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,3/8] netfilter: flowtable: initialise extack before use [net,1/8] netfilter: allow ipv6 fragments to arrive on different devices - 1 - 172- 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,2/8] netfilter: nfnetlink: Initialise extack before use in ACKs [net,1/8] netfilter: allow ipv6 fragments to arrive on different devices - 1 - 1711 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,1/8] netfilter: allow ipv6 fragments to arrive on different devices [net,1/8] netfilter: allow ipv6 fragments to arrive on different devices - - - 172- 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,0/8] Netfilter fixes for net - - - --- 2024-08-14 Pablo Neira Ayuso netdev Accepted
[net,2/2] netfilter: iptables: Fix potential null-ptr-deref in ip6table_nat_table_init(). [net,1/2] netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init(). - 1 - 181- 2024-07-31 Pablo Neira Ayuso netdev Accepted
[net,1/2] netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init(). [net,1/2] netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init(). - 1 - 181- 2024-07-31 Pablo Neira Ayuso netdev Accepted
[net,0/2] Netfilter fixes for net - - - --- 2024-07-31 Pablo Neira Ayuso netdev Accepted
[net,1/1] netfilter: nft_set_pipapo_avx2: disable softinterrupts [net,1/1] netfilter: nft_set_pipapo_avx2: disable softinterrupts - 1 - 18-1 2024-07-24 Pablo Neira Ayuso netdev Accepted
[net,0/1] Netfilter fixes for net - - - --- 2024-07-24 Pablo Neira Ayuso netdev Accepted
[net,4/4] ipvs: properly dereference pe in ip_vs_add_service [net,1/4] netfilter: ctnetlink: use helper function to calculate expect ID 2 - - 17-2 2024-07-17 Pablo Neira Ayuso netdev Accepted
[net,3/4] selftests: netfilter: add test case for recent mismatch bug [net,1/4] netfilter: ctnetlink: use helper function to calculate expect ID - 1 - 1621 2024-07-17 Pablo Neira Ayuso netdev Accepted
[net,2/4] netfilter: nf_set_pipapo: fix initial map fill [net,1/4] netfilter: ctnetlink: use helper function to calculate expect ID - 1 - 1612 2024-07-17 Pablo Neira Ayuso netdev Accepted
[net,1/4] netfilter: ctnetlink: use helper function to calculate expect ID [net,1/4] netfilter: ctnetlink: use helper function to calculate expect ID - - - 1711 2024-07-17 Pablo Neira Ayuso netdev Accepted
[net,0/4] Netfilter/IPVS fixes for net - - - --- 2024-07-17 Pablo Neira Ayuso netdev Accepted
[net] net: flow_dissector: use DEBUG_NET_WARN_ON_ONCE [net] net: flow_dissector: use DEBUG_NET_WARN_ON_ONCE - 1 - 181- 2024-07-15 Pablo Neira Ayuso netdev Accepted
[net,2/2] netfilter: nf_tables: prefer nft_chain_validate [net,1/2] netfilter: nfnetlink_queue: drop bogus WARN_ON - - - 171- 2024-07-11 Pablo Neira Ayuso netdev Accepted
[net,1/2] netfilter: nfnetlink_queue: drop bogus WARN_ON [net,1/2] netfilter: nfnetlink_queue: drop bogus WARN_ON - - - 171- 2024-07-11 Pablo Neira Ayuso netdev Accepted
[net,0/2] Netfilter fixes for net - - - --- 2024-07-11 Pablo Neira Ayuso netdev Accepted
[net,1/1] netfilter: nf_tables: unconditionally flush pending work before notifier [net,1/1] netfilter: nf_tables: unconditionally flush pending work before notifier - - - 1621 2024-07-03 Pablo Neira Ayuso netdev Accepted
[net,0/1] Netfilter fixes for net - - - --- 2024-07-03 Pablo Neira Ayuso netdev Accepted
[net-next,17/17] netfilter: xt_recent: Lift restrictions on max hitcount value [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,16/17] selftests: netfilter: nft_queue.sh: add test for disappearing listener [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 172- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,15/17] netfilter: nf_tables: rise cap on SELinux secmark context [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1711 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,14/17] netfilter: cttimeout: remove 'l3num' attr check [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - 1 - 172- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,13/17] netfilter: nf_conncount: fix wrong variable type [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 172- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,12/17] ipvs: Avoid unnecessary calls to skb_is_gso_sctp [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes 2 - - 1711 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,11/17] netfilter: nf_tables: do not store nft_ctx in transaction objects [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,10/17] netfilter: nf_tables: pass nft_table to destroy function [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 172- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,09/17] netfilter: nf_tables: reduce trans->ctx.chain references [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,08/17] netfilter: nf_tables: store chain pointer in rule transaction [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,07/17] netfilter: nf_tables: avoid usage of embedded nft_ctx [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,06/17] netfilter: nf_tables: pass more specific nft_trans_chain where possible [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,05/17] netfilter: nf_tables: pass nft_chain to destroy function, not nft_ctx [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,04/17] netfilter: nf_tables: reduce trans->ctx.table references [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,03/17] netfilter: nf_tables: compact chain+ft transaction objects [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 172- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,02/17] netfilter: nf_tables: move bind list_head into relevant subtypes [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes [net-next,01/17] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 163- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[net-next,00/17] Netfilter/IPVS updates for net-next - - - --- 2024-06-28 Pablo Neira Ayuso netdev Accepted
[nf-next,19/19] netfilter: xt_recent: Lift restrictions on max hitcount value [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,18/19] selftests: netfilter: nft_queue.sh: add test for disappearing listener [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1621 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,17/19] selftests: netfilter: nft_queue.sh: sctp coverage [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,16/19] netfilter: nfnetlink_queue: unbreak SCTP traffic [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,15/19] netfilter: nf_tables: rise cap on SELinux secmark context [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1612 2024-06-27 Pablo Neira Ayuso Superseded
[nf-next,14/19] netfilter: cttimeout: remove 'l3num' attr check [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - 1 - 1621 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,13/19] netfilter: nf_conncount: fix wrong variable type [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1621 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,12/19] ipvs: Avoid unnecessary calls to skb_is_gso_sctp [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes 2 - - 1612 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,11/19] netfilter: nf_tables: do not store nft_ctx in transaction objects [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,10/19] netfilter: nf_tables: pass nft_table to destroy function [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1621 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,09/19] netfilter: nf_tables: reduce trans->ctx.chain references [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,08/19] netfilter: nf_tables: store chain pointer in rule transaction [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,07/19] netfilter: nf_tables: avoid usage of embedded nft_ctx [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,06/19] netfilter: nf_tables: pass more specific nft_trans_chain where possible [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,05/19] netfilter: nf_tables: pass nft_chain to destroy function, not nft_ctx [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,04/19] netfilter: nf_tables: reduce trans->ctx.table references [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,03/19] netfilter: nf_tables: compact chain+ft transaction objects [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1621 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,02/19] netfilter: nf_tables: move bind list_head into relevant subtypes [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes [nf-next,01/19] netfilter: nf_tables: make struct nft_trans first member of derived subtypes - - - 1531 2024-06-27 Pablo Neira Ayuso netdev Superseded
[nf-next,00/19] Netfilter/IPVS updates for net-next - - - --- 2024-06-27 Pablo Neira Ayuso Changes Requested
[net,2/2] netfilter: nf_tables: fully validate NFT_DATA_VALUE on store to data registers [net,1/2] netfilter: fix undefined reference to 'netfilter_lwtunnel_*' when CONFIG_SYSCTL=n - - - 172- 2024-06-26 Pablo Neira Ayuso netdev Accepted
[net,1/2] netfilter: fix undefined reference to 'netfilter_lwtunnel_*' when CONFIG_SYSCTL=n [net,1/2] netfilter: fix undefined reference to 'netfilter_lwtunnel_*' when CONFIG_SYSCTL=n - - - 18-1 2024-06-26 Pablo Neira Ayuso netdev Accepted
[net,0/2] Netfilter fixes for net - - - --- 2024-06-26 Pablo Neira Ayuso netdev Accepted
[net,5/5] selftests: add selftest for the SRv6 End.DX6 behavior with netfilter [net,1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected() - - - 172- 2024-06-19 Pablo Neira Ayuso netdev Accepted
[net,4/5] selftests: add selftest for the SRv6 End.DX4 behavior with netfilter [net,1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected() - - - 172- 2024-06-19 Pablo Neira Ayuso netdev Accepted
[net,3/5] netfilter: move the sysctl nf_hooks_lwtunnel into the netfilter core [net,1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected() - - - 18-1 2024-06-19 Pablo Neira Ayuso netdev Accepted
[net,2/5] seg6: fix parameter passing when calling NF_HOOK() in End.DX4 and End.DX6 behaviors [net,1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected() - 1 - 18-1 2024-06-19 Pablo Neira Ayuso netdev Accepted
[net,1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected() [net,1/5] netfilter: ipset: Fix suspicious rcu_dereference_protected() - - - 18-1 2024-06-19 Pablo Neira Ayuso netdev Accepted
[net,0/5] Netfilter fixes for net - - - --- 2024-06-19 Pablo Neira Ayuso netdev Accepted
[net,3/3] netfilter: Use flowlabel flow key when re-routing mangled packets [net,1/3] netfilter: nft_inner: validate mandatory meta and payload - - - 181- 2024-06-11 Pablo Neira Ayuso netdev Accepted
[net,2/3] netfilter: ipset: Fix race between namespace cleanup and gc in the list:set type [net,1/3] netfilter: nft_inner: validate mandatory meta and payload - - 1 1711 2024-06-11 Pablo Neira Ayuso netdev Accepted
[net,1/3] netfilter: nft_inner: validate mandatory meta and payload [net,1/3] netfilter: nft_inner: validate mandatory meta and payload - - - 181- 2024-06-11 Pablo Neira Ayuso netdev Accepted
[net,0/3] Netfilter fixes for net - - - --- 2024-06-11 Pablo Neira Ayuso netdev Accepted
[net,6/6] netfilter: nft_fib: allow from forward/input without iif selector [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 1413 2024-05-28 Pablo Neira Ayuso netdev Accepted
[net,5/6] netfilter: tproxy: bail out if IP has been disabled on the device [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 1413 2024-05-28 Pablo Neira Ayuso netdev Accepted
[net,4/6] netfilter: nft_payload: skbuff vlan metadata mangle support [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 1413 2024-05-28 Pablo Neira Ayuso netdev Accepted
[net,3/6] netfilter: nft_payload: restore vlan q-in-q match support [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 1413 2024-05-28 Pablo Neira Ayuso netdev Accepted
[net,2/6] netfilter: ipset: Add list flush to cancel_gc [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() 1 - - 1413 2024-05-28 Pablo Neira Ayuso netdev Accepted
[net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() 1 - - 1323 2024-05-28 Pablo Neira Ayuso netdev Accepted
[net,0/6,v3] Netfilter fixes for net - - - --- 2024-05-28 Pablo Neira Ayuso netdev Accepted
[net,6/6] netfilter: nft_fib: allow from forward/input without iif selector [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 181- 2024-05-23 Pablo Neira Ayuso netdev Superseded
[net,5/6] netfilter: tproxy: bail out if IP has been disabled on the device [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 181- 2024-05-23 Pablo Neira Ayuso netdev Superseded
[net,4/6] netfilter: nft_payload: skbuff vlan metadata mangle support [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 1711 2024-05-23 Pablo Neira Ayuso netdev Superseded
[net,3/6] netfilter: nft_payload: restore vlan q-in-q match support [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 181- 2024-05-23 Pablo Neira Ayuso netdev Superseded
[net,2/6] netfilter: ipset: Add list flush to cancel_gc [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() 1 - - 18-1 2024-05-23 Pablo Neira Ayuso netdev Superseded
[net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() 1 - - 172- 2024-05-23 Pablo Neira Ayuso netdev Superseded
[net,0/6,v2] Netfilter fixes for net - - - --- 2024-05-23 Pablo Neira Ayuso netdev Changes Requested
[net,6/6] netfilter: nft_fib: allow from forward/input without iif selector [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 171- 2024-05-22 Pablo Neira Ayuso netdev Superseded
[net,5/6] netfilter: tproxy: bail out if IP has been disabled on the device [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 171- 2024-05-22 Pablo Neira Ayuso netdev Superseded
[net,4/6] netfilter: nft_payload: skbuff vlan metadata mangle support [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 1413 2024-05-22 Pablo Neira Ayuso netdev Superseded
[net,3/6] netfilter: nft_payload: restore vlan q-in-q match support [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() - - - 171- 2024-05-22 Pablo Neira Ayuso netdev Superseded
[net,2/6] netfilter: ipset: Add list flush to cancel_gc [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() 1 - - 17-1 2024-05-22 Pablo Neira Ayuso netdev Superseded
[net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() [net,1/6] netfilter: nfnetlink_queue: acquire rcu_read_lock() in instance_destroy_rcu() 1 - - 162- 2024-05-22 Pablo Neira Ayuso netdev Superseded
« 1 2 3 417 18 »