aboutsummaryrefslogtreecommitdiff
path: root/net/netfilter
AgeCommit message (Expand)AuthorFilesLines
2023-11-14netfilter: nf_tables: split async and sync catchall in two functionsGravatar Pablo Neira Ayuso 1-25/+30
2023-11-14netfilter: ipset: fix race condition between swap/destroy and kernel side add...Gravatar Jozsef Kadlecsik 1-7/+7
2023-11-14netfilter: nf_tables: bogus ENOENT when destroying element which does not existGravatar Pablo Neira Ayuso 1-2/+3
2023-11-14netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval()Gravatar Dan Carpenter 2-3/+4
2023-11-14netfilter: nft_set_rbtree: Remove unused variable nft_netGravatar Yang Li 1-2/+0
2023-11-08Merge tag 'nf-23-11-08' of git://git.kernel.org/pub/scm/linux/kernel/git/netf...Gravatar Jakub Kicinski 27-7/+69
2023-11-08netfilter: nat: fix ipv6 nat redirect with mapped and scoped addressesGravatar Florian Westphal 1-1/+26
2023-11-08netfilter: xt_recent: fix (increase) ipv6 literal buffer lengthGravatar Maciej Żenczykowski 1-1/+1
2023-11-08ipvs: add missing module descriptionsGravatar Florian Westphal 16-0/+16
2023-11-08netfilter: nf_tables: remove catchall element in GC sync pathGravatar Pablo Neira Ayuso 1-5/+17
2023-11-08netfilter: add missing module descriptionsGravatar Florian Westphal 9-0/+9
2023-11-01bpf: Add __bpf_kfunc_{start,end}_defs macrosGravatar Dave Marchevsky 2-8/+4
2023-10-30Merge tag 'ipsec-next-2023-10-28' of git://git.kernel.org/pub/scm/linux/kerne...Gravatar Jakub Kicinski 1-1/+1
2023-10-26Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netGravatar Jakub Kicinski 1-7/+7
2023-10-26Merge tag 'nf-next-23-10-25' of git://git.kernel.org/pub/scm/linux/kernel/git...Gravatar Paolo Abeni 8-438/+486
2023-10-25netfilter: flowtable: GC pushes back packets to classic pathGravatar Pablo Neira Ayuso 1-7/+7
2023-10-24netfilter: nf_tables: Carry reset boolean in nft_set_dump_ctxGravatar Phil Sutter 1-10/+8
2023-10-24netfilter: nf_tables: set->ops->insert returns opaque set element in case of ...Gravatar Pablo Neira Ayuso 5-23/+26
2023-10-24netfilter: nf_tables: shrink memory consumption of set elementsGravatar Pablo Neira Ayuso 5-151/+107
2023-10-24netfilter: nf_tables: expose opaque set element as struct nft_elem_privGravatar Pablo Neira Ayuso 7-108/+148
2023-10-24netfilter: nf_tables: set backend .flush always succeedsGravatar Pablo Neira Ayuso 5-22/+6
2023-10-24netfilter: nft_set_pipapo: no need to call pipapo_deactivate() from flushGravatar Pablo Neira Ayuso 1-2/+3
2023-10-24netfilter: nf_tables: Carry reset boolean in nft_obj_dump_ctxGravatar Phil Sutter 1-6/+6
2023-10-24netfilter: nf_tables: nft_obj_filter fits into cb->ctxGravatar Phil Sutter 1-11/+5
2023-10-24netfilter: nf_tables: Carry s_idx in nft_obj_dump_ctxGravatar Phil Sutter 1-4/+5
2023-10-24netfilter: nf_tables: A better name for nft_obj_filterGravatar Phil Sutter 1-16/+16
2023-10-24netfilter: nf_tables: Unconditionally allocate nft_obj_filterGravatar Phil Sutter 1-21/+15
2023-10-24netfilter: nf_tables: Drop pointless memset in nf_tables_dump_objGravatar Phil Sutter 1-3/+0
2023-10-24netfilter: conntrack: switch connlabels to atomic_tGravatar Florian Westphal 1-9/+8
2023-10-24netfilter: nf_tables: Add locking for NFT_MSG_GETRULE_RESET requestsGravatar Phil Sutter 1-13/+64
2023-10-24netfilter: nf_tables: Introduce nf_tables_getrule_single()Gravatar Phil Sutter 1-31/+43
2023-10-24netfilter: nf_tables: Open-code audit log call in nf_tables_getrule()Gravatar Phil Sutter 1-4/+15
2023-10-24netfilter: nft_set_rbtree: prefer sync gc to async workerGravatar Florian Westphal 1-59/+65
2023-10-24netfilter: nft_set_rbtree: rename gc deactivate+erase functionGravatar Florian Westphal 1-5/+6
2023-10-23tcp: introduce tcp_clock_ms()Gravatar Eric Dumazet 1-1/+1
2023-10-19Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netGravatar Jakub Kicinski 6-39/+40
2023-10-18netfilter: nf_tables: revert do not remove elements if set backend implements...Gravatar Pablo Neira Ayuso 1-4/+1
2023-10-18netfilter: nft_set_rbtree: .deactivate fails if element has expiredGravatar Pablo Neira Ayuso 1-0/+2
2023-10-18netfilter: nf_tables: audit log object reset once per tableGravatar Phil Sutter 1-22/+28
2023-10-18netfilter: nf_tables: de-constify set commit ops function argumentGravatar Florian Westphal 1-4/+3
2023-10-18netfilter: make nftables drops visible in net dropmonitorGravatar Florian Westphal 2-4/+8
2023-10-18netfilter: nf_nat: mask out non-verdict bits when checking return valueGravatar Florian Westphal 1-2/+3
2023-10-18netfilter: conntrack: convert nf_conntrack_update to netfilter verdictsGravatar Florian Westphal 2-31/+42
2023-10-18netfilter: nf_tables: mask out non-verdict bits when checking return valueGravatar Florian Westphal 2-3/+7
2023-10-12netfilter: nft_payload: fix wrong mac header matchingGravatar Florian Westphal 1-1/+1
2023-10-12nf_tables: fix NULL pointer dereference in nft_expr_inner_parse()Gravatar Xingyuan Mo 1-1/+1
2023-10-12nf_tables: fix NULL pointer dereference in nft_inner_init()Gravatar Xingyuan Mo 1-0/+1
2023-10-12netfilter: nf_tables: do not refresh timeout when resetting elementGravatar Pablo Neira Ayuso 1-13/+5
2023-10-12netfilter: nf_tables: Annotate struct nft_pipapo_match with __counted_byGravatar Kees Cook 1-1/+1
2023-10-12netfilter: nfnetlink_log: silence bogus compiler warningGravatar Florian Westphal 1-1/+1