aboutsummaryrefslogtreecommitdiff
path: root/net/netfilter
AgeCommit message (Expand)AuthorFilesLines
2016-09-06Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextGravatar David S. Miller 26-923/+1186
2016-08-30netfilter: log: Check param to avoid overflow in nf_log_setGravatar Gao Feng 1-3/+5
2016-08-30netfilter: remove __nf_ct_kill_acct helperGravatar Florian Westphal 1-7/+5
2016-08-30netfilter: conntrack: resched gc again if eviction rate is highGravatar Florian Westphal 1-0/+6
2016-08-30netfilter: conntrack: add gc worker to remove timed-out entriesGravatar Florian Westphal 1-0/+76
2016-08-30netfilter: evict stale entries on netlink dumpsGravatar Florian Westphal 1-1/+24
2016-08-30netfilter: conntrack: get rid of conntrack timerGravatar Florian Westphal 4-58/+56
2016-08-30netfilter: don't rely on DYING bit to detect when destroy event was sentGravatar Florian Westphal 1-8/+14
2016-08-30netfilter: restart search if moved to other chainGravatar Florian Westphal 1-0/+7
2016-08-26netfilter: nf_tables: Use nla_put_be32() to dump immediate parametersGravatar Pablo Neira Ayuso 2-5/+5
2016-08-26netfilter: nf_tables: honor NLM_F_EXCL flag in set element insertionGravatar Pablo Neira Ayuso 3-13/+36
2016-08-23netfilter: nf_tables: reject hook configuration updates on existing chainsGravatar Pablo Neira Ayuso 1-0/+31
2016-08-23netfilter: nf_tables: introduce nft_chain_parse_hook()Gravatar Pablo Neira Ayuso 1-63/+89
2016-08-22netfilter: nft_hash: fix non static symbol warningGravatar Wei Yongjun 1-1/+1
2016-08-22netfilter: fix spelling mistake: "delimitter" -> "delimiter"Gravatar Colin Ian King 1-1/+1
2016-08-22netfilter: nf_tables: add number generator expressionGravatar Laura Garcia Liebana 3-0/+199
2016-08-22netfilter: nf_tables: add quota expressionGravatar Pablo Neira Ayuso 3-0/+128
2016-08-18netfilter: nf_conntrack: restore nf_conntrack_htable_size as exported symbolGravatar Pablo Neira Ayuso 1-0/+2
2016-08-18netfilter: cttimeout: fix use after free error when delete netnsGravatar Liping Zhang 1-6/+10
2016-08-18netfilter: nfnetlink_acct: fix race between nfacct del and xt_nfacct destroyGravatar Liping Zhang 1-4/+4
2016-08-18netfilter: conntrack: simplify the code by using nf_conntrack_get_htGravatar Liping Zhang 1-36/+10
2016-08-18netfilter: tproxy: properly refcount tcp listenersGravatar Eric Dumazet 1-0/+4
2016-08-18netfilter: nfnetlink_acct: report overquota to the right netnsGravatar Liping Zhang 2-5/+6
2016-08-17netfilter: nfnetlink_log: add "nf-logger-3-1" module alias nameGravatar Liping Zhang 1-0/+1
2016-08-17netfilter: conntrack: do not dump other netns's conntrack entries via procGravatar Liping Zhang 1-0/+4
2016-08-13netfilter: remove ip_conntrack* sysctl compat codeGravatar Pablo Neira Ayuso 6-378/+6
2016-08-12netfilter: nf_tables: add hash expressionGravatar Laura Garcia Liebana 3-0/+143
2016-08-12netfilter: nf_tables: rename set implementationsGravatar Pablo Neira Ayuso 4-4/+4
2016-08-12ipvs: use nf_ct_kill helperGravatar Florian Westphal 1-5/+2
2016-08-12netfilter: use_nf_conn_expires helper in more placesGravatar Florian Westphal 3-9/+3
2016-08-12netfilter: physdev: add missed blankGravatar Hangbin Liu 1-2/+2
2016-08-12netfilter: conntrack: Only need first 4 bytes to get l4proto portsGravatar Gao Feng 5-8/+10
2016-08-10netfilter: nft_exthdr: Add size check on u8 nft_exthdr attributesGravatar Laura Garcia Liebana 1-2/+9
2016-08-09netfilter: ctnetlink: reject new conntrack request with different l4protoGravatar Liping Zhang 1-0/+2
2016-08-09netfilter: nfnetlink_queue: reject verdict request from different portidGravatar Liping Zhang 1-4/+2
2016-08-09netfilter: nfnetlink_queue: fix memory leak when attach expectation successfullyGravatar Liping Zhang 1-6/+2
2016-08-09netfilter: nf_ct_expect: remove the redundant slash when policy name is emptyGravatar Liping Zhang 1-1/+1
2016-08-08netfilter: nf_conntrack_sip: CSeq 0 is a valid CSeqGravatar Christophe Leroy 1-2/+2
2016-08-08netfilter: nft_rbtree: ignore inactive matching element with no descendantsGravatar Pablo Neira Ayuso 1-4/+6
2016-08-08netfilter: nf_ct_h323: do not re-activate already expired timerGravatar Liping Zhang 1-1/+2
2016-07-27Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-nextGravatar Linus Torvalds 36-808/+1009
2016-07-25Merge branch 'locking-core-for-linus' of git://git.kernel.org/pub/scm/linux/k...Gravatar Linus Torvalds 1-1/+22
2016-07-24Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextGravatar David S. Miller 26-488/+589
2016-07-24Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netGravatar David S. Miller 5-9/+17
2016-07-23netfilter: nft_compat: fix crash when related match/target module is removedGravatar Liping Zhang 1-23/+20
2016-07-23netfilter: nft_compat: put back match/target module if init failGravatar Liping Zhang 1-8/+24
2016-07-23netfilter: h323: Use mod_timer instead of set_expect_timeoutGravatar Gao Feng 1-14/+1
2016-07-22netfilter: connlabels: move set helper to xt_connlabelGravatar Florian Westphal 2-30/+16
2016-07-22netfilter: conntrack: support a fixed size of 128 distinct labelsGravatar Florian Westphal 4-26/+12
2016-07-21netfilter: nf_tables: allow to filter out rules by table and chainGravatar Pablo Neira Ayuso 1-0/+38