Show patches with: Submitter = Pablo Neira Ayuso       |    Archived = No       |   1642 patches
« 1 2 ... 3 4 516 17 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[net,3/7] netfilter: br_netfilter: skip conntrack input hook for promisc packets [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - - - 181- 2024-04-11 Pablo Neira Ayuso netdev Accepted
[net,2/7] netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get() [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - - - 172- 2024-04-11 Pablo Neira Ayuso netdev Accepted
[net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() [net,1/7] netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get() - - - 172- 2024-04-11 Pablo Neira Ayuso netdev Accepted
[net,0/7] Netfilter fixes for net - - - --- 2024-04-11 Pablo Neira Ayuso netdev Accepted
[nf] netfilter: br_netfilter: skip conntrack input hook for promisc packets [nf] netfilter: br_netfilter: skip conntrack input hook for promisc packets - - - 163- 2024-04-09 Pablo Neira Ayuso netdev Awaiting Upstream
[net,6/6] netfilter: nf_tables: discard table flag update with pending basechain deletion [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - - - 172- 2024-04-04 Pablo Neira Ayuso netdev Accepted
[net,5/6] netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get() [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - - - 163- 2024-04-04 Pablo Neira Ayuso netdev Accepted
[net,4/6] netfilter: nf_tables: reject new basechain after table flag update [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - - - 172- 2024-04-04 Pablo Neira Ayuso netdev Accepted
[net,3/6] netfilter: nf_tables: flush pending destroy work before exit_net release [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - - - 1711 2024-04-04 Pablo Neira Ayuso netdev Accepted
[net,2/6] netfilter: nf_tables: release mutex after nft_gc_seq_end from abort path [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - - - 1711 2024-04-04 Pablo Neira Ayuso netdev Accepted
[net,1/6] netfilter: nf_tables: release batch on table validation from abort path [net,1/6] netfilter: nf_tables: release batch on table validation from abort path - - - 172- 2024-04-04 Pablo Neira Ayuso netdev Accepted
[net,0/6] Netfilter fixes for net - - - --- 2024-04-04 Pablo Neira Ayuso netdev Accepted
[net,4/4] netfilter: arptables: Select NETFILTER_FAMILY_ARP when building arp_tables.c [net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks - 1 - 18-1 2024-03-28 Pablo Neira Ayuso netdev Accepted
[net,3/4] netfilter: nf_tables: skip netdev hook unregistration if table is dormant [net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks - - - 172- 2024-03-28 Pablo Neira Ayuso netdev Accepted
[net,2/4] netfilter: nf_tables: reject table flag and netdev basechain updates [net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks - - - 172- 2024-03-28 Pablo Neira Ayuso netdev Accepted
[net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks [net,1/4] netfilter: nf_tables: reject destroy command to remove basechain hooks - - - 172- 2024-03-28 Pablo Neira Ayuso netdev Accepted
[net,0/4] Netfilter fixes for net - - - --- 2024-03-28 Pablo Neira Ayuso netdev Accepted
[net,3/3] netfilter: nf_tables: Fix a memory leak in nf_tables_updchain [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - - - 181- 2024-03-21 Pablo Neira Ayuso netdev Accepted
[net,2/3] netfilter: nf_tables: do not compare internal table flags on updates [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - - - 181- 2024-03-21 Pablo Neira Ayuso netdev Accepted
[net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - - - 18-1 2024-03-21 Pablo Neira Ayuso netdev Accepted
[net,0/3,v2] Netfilter fixes for net - - - --- 2024-03-21 Pablo Neira Ayuso netdev Accepted
[net,3/3] netfilter: nf_tables: Fix a memory leak in nf_tables_updchain [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - - - 1711 2024-03-21 Pablo Neira Ayuso netdev Superseded
[net,2/3] netfilter: nf_tables: do not compare internal table flags on updates [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - - - 1711 2024-03-21 Pablo Neira Ayuso netdev Superseded
[net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path [net,1/3] netfilter: nft_set_pipapo: release elements in clone only from destroy path - - - 17-2 2024-03-21 Pablo Neira Ayuso netdev Superseded
[net,0/3] Netfilter fixes for net - - - --- 2024-03-21 Pablo Neira Ayuso netdev Changes Requested
[net,5/5] netfilter: nf_conntrack_h323: Add protection for bmp length out of range [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - - - 181- 2024-03-07 Pablo Neira Ayuso netdev Accepted
[net,4/5] netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeout [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - - - 181- 2024-03-07 Pablo Neira Ayuso netdev Accepted
[net,3/5] netfilter: nft_ct: fix l3num expectations with inet pseudo family [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - - - 181- 2024-03-07 Pablo Neira Ayuso netdev Accepted
[net,2/5] netfilter: nf_tables: reject constant set with timeout [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - - - 181- 2024-03-07 Pablo Neira Ayuso netdev Accepted
[net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag [net,1/5] netfilter: nf_tables: disallow anonymous set with timeout flag - - - 172- 2024-03-07 Pablo Neira Ayuso netdev Accepted
[net,0/5] Netfilter fixes for net - - - --- 2024-03-07 Pablo Neira Ayuso netdev Accepted
[net,3/3] selftests: netfilter: add bridge conntrack + multicast test case [net,1/3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() - - - 172- 2024-02-29 Pablo Neira Ayuso netdev Accepted
[net,2/3] netfilter: bridge: confirm multicast packets before passing them up the stack [net,1/3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() - - - 181- 2024-02-29 Pablo Neira Ayuso netdev Accepted
[net,1/3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() [net,1/3] netfilter: nf_tables: allow NFPROTO_INET in nft_(match/target)_validate() - - - 181- 2024-02-29 Pablo Neira Ayuso netdev Accepted
[net,0/3] Netfilter fixes for net - - - --- 2024-02-29 Pablo Neira Ayuso netdev Accepted
[net] netlink: validate length of NLA_{BE16,BE32} types [net] netlink: validate length of NLA_{BE16,BE32} types - 2 - 1-1 2024-02-25 Pablo Neira Ayuso netdev Not Applicable
[net,5/5] netfilter: nf_tables: use kzalloc for hook allocation [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - - - 172- 2024-02-22 Pablo Neira Ayuso netdev Accepted
[net,4/5] netfilter: nf_tables: register hooks last when adding new chain/flowtable [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - - - 1711 2024-02-22 Pablo Neira Ayuso netdev Accepted
[net,3/5] netfilter: nft_flow_offload: release dst in case direct xmit path is used [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - - - 181- 2024-02-22 Pablo Neira Ayuso netdev Accepted
[net,2/5] netfilter: nft_flow_offload: reset dst in route object after setting up flow [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - - - 181- 2024-02-22 Pablo Neira Ayuso netdev Accepted
[net,1/5] netfilter: nf_tables: set dormant flag on hook register failure [net,1/5] netfilter: nf_tables: set dormant flag on hook register failure - - - 181- 2024-02-22 Pablo Neira Ayuso netdev Accepted
[net,0/5] Netfilter fixes for net - - - --- 2024-02-22 Pablo Neira Ayuso netdev Accepted
[net,3/3] netfilter: nf_tables: fix bidirectional offload regression [net,1/3] netfilter: nft_set_pipapo: fix missing : in kdoc - - - 17-1 2024-02-14 Pablo Neira Ayuso netdev Accepted
[net,2/3] netfilter: nat: restore default DNAT behavior [net,1/3] netfilter: nft_set_pipapo: fix missing : in kdoc - - - 171- 2024-02-14 Pablo Neira Ayuso netdev Accepted
[net,1/3] netfilter: nft_set_pipapo: fix missing : in kdoc [net,1/3] netfilter: nft_set_pipapo: fix missing : in kdoc - - - 17-1 2024-02-14 Pablo Neira Ayuso netdev Accepted
[net,0/3] Netfilter fixes for net - - - --- 2024-02-14 Pablo Neira Ayuso netdev Accepted
[net,13/13] netfilter: nft_set_pipapo: remove scratch_aligned pointer [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - 1 - 17-1 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,12/13] netfilter: nft_set_pipapo: add helper to release pcpu scratch area [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - 1 - 162- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,11/13] netfilter: nft_set_pipapo: store index in scratch maps [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - 1 - 1611 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,10/13] netfilter: nft_set_rbtree: skip end interval element from gc [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,09/13] netfilter: nfnetlink_queue: un-break NF_REPEAT [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 162- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,08/13] netfilter: nf_tables: use timestamp to check for set element timeout [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 162- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,07/13] netfilter: nft_ct: reject direction for ct id [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,06/13] netfilter: ctnetlink: fix filtering for zone 0 [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 17-1 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,05/13] netfilter: ipset: Missing gc cancellations fixed [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - 2 171- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,04/13] netfilter: nft_set_pipapo: remove static in nft_pipapo_get() [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,03/13] netfilter: nft_compat: restrict match/target protocol to u16 [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,02/13] netfilter: nft_compat: reject unused compat flag [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 162- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,v2,00/13] Netfilter fixes for net - - - --- 2024-02-08 Pablo Neira Ayuso netdev Accepted
[net,13/13] netfilter: nft_set_pipapo: remove scratch_aligned pointer [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - 1 - 16-2 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,12/13] netfilter: nft_set_pipapo: add helper to release pcpu scratch area [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - 1 - 162- 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,11/13] netfilter: nft_set_pipapo: store index in scratch maps [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - 1 - 1512 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,10/13] netfilter: nft_set_rbtree: skip end interval element from gc [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,09/13] netfilter: nfnetlink_queue: un-break NF_REPEAT [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 162- 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,08/13] netfilter: nf_tables: use timestamp to check for set element timeout [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 1224 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,07/13] netfilter: nft_ct: reject direction for ct id [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,06/13] netfilter: ctnetlink: fix filtering for zone 0 [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 17-1 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,05/13] netfilter: ipset: Missing gc cancellations fixed [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - 2 1323 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,04/13] netfilter: nft_set_pipapo: remove static in nft_pipapo_get() [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 1521 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,03/13] netfilter: nft_compat: restrict match/target protocol to u16 [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,02/13] netfilter: nft_compat: reject unused compat flag [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 162- 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits [net,01/13] netfilter: nft_compat: narrow down revision to unsigned 8-bits - - - 171- 2024-02-07 Pablo Neira Ayuso netdev Superseded
[net,00/13] Netfilter fixes for net - - - --- 2024-02-07 Pablo Neira Ayuso netdev Changes Requested
[net,6/6] netfilter: nft_ct: sanitize layer 3 and 4 protocol number in custom expectations [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - - - 19-- 2024-01-31 Pablo Neira Ayuso netdev Accepted
[net,5/6] netfilter: nf_log: replace BUG_ON by WARN_ON_ONCE when putting logger [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - - - 19-- 2024-01-31 Pablo Neira Ayuso netdev Accepted
[net,4/6] netfilter: ipset: fix performance regression in swap operation [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - - 1 19-- 2024-01-31 Pablo Neira Ayuso netdev Accepted
[net,3/6] netfilter: conntrack: check SCTP_CID_SHUTDOWN_ACK for vtag setting in sctp_new [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - - - 19-- 2024-01-31 Pablo Neira Ayuso netdev Accepted
[net,2/6] netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEV [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - - - 19-- 2024-01-31 Pablo Neira Ayuso netdev Accepted
[net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN [net,1/6] netfilter: conntrack: correct window scaling with retransmitted SYN - - - 19-- 2024-01-31 Pablo Neira Ayuso netdev Accepted
[net,0/6] Netfilter fixes for net - - - --- 2024-01-31 Pablo Neira Ayuso netdev Accepted
[net,6/6] netfilter: nf_tables: validate NFPROTO_* family [net,1/6] netfilter: nf_tables: cleanup documentation - - - 18-- 2024-01-24 Pablo Neira Ayuso netdev Accepted
[net,5/6] netfilter: nf_tables: reject QUEUE/DROP verdict parameters [net,1/6] netfilter: nf_tables: cleanup documentation - - - 171- 2024-01-24 Pablo Neira Ayuso netdev Accepted
[net,4/6] netfilter: nf_tables: restrict anonymous set and map names to 16 bytes [net,1/6] netfilter: nf_tables: cleanup documentation - - - 18-- 2024-01-24 Pablo Neira Ayuso netdev Accepted
[net,3/6] netfilter: nft_limit: reject configurations that cause integer overflow [net,1/6] netfilter: nf_tables: cleanup documentation - - - 171- 2024-01-24 Pablo Neira Ayuso netdev Accepted
[net,2/6] netfilter: nft_chain_filter: handle NETDEV_UNREGISTER for inet/ingress basechain [net,1/6] netfilter: nf_tables: cleanup documentation - - - 18-- 2024-01-24 Pablo Neira Ayuso netdev Accepted
[net,1/6] netfilter: nf_tables: cleanup documentation [net,1/6] netfilter: nf_tables: cleanup documentation - - - 171- 2024-01-24 Pablo Neira Ayuso netdev Accepted
[net,0/6] Netfilter fixes for net - - - --- 2024-01-24 Pablo Neira Ayuso netdev Accepted
[net,13/13] ipvs: avoid stat macros calls from preemptible context [net,01/13] netfilter: nf_tables: reject invalid set policy 2 - - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,12/13] netfilter: nf_tables: reject NFT_SET_CONCAT with not field length description [net,01/13] netfilter: nf_tables: reject invalid set policy - - - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,11/13] netfilter: nf_tables: skip dead set elements in netlink dump [net,01/13] netfilter: nf_tables: reject invalid set policy - - - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,10/13] netfilter: nf_tables: do not allow mismatch field size and set key length [net,01/13] netfilter: nf_tables: reject invalid set policy - - - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,09/13] netfilter: nf_tables: check if catch-all set element is active in next generation [net,01/13] netfilter: nf_tables: reject invalid set policy - - - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,08/13] netfilter: bridge: replace physindev with physinif in nf_bridge_info [net,01/13] netfilter: nf_tables: reject invalid set policy - - - 171- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,07/13] netfilter: propagate net to nf_bridge_get_physindev [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - 171- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,06/13] netfilter: nf_queue: remove excess nf_bridge variable [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,05/13] netfilter: nfnetlink_log: use proper helper for fetching physinif [net,01/13] netfilter: nf_tables: reject invalid set policy - 1 - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,04/13] netfilter: nft_limit: do not ignore unsupported flags [net,01/13] netfilter: nf_tables: reject invalid set policy - - - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,03/13] netfilter: nf_tables: bail out if stateful expression provides no .clone [net,01/13] netfilter: nf_tables: reject invalid set policy - - - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
[net,02/13] netfilter: nf_tables: validate .maxattr at expression registration [net,01/13] netfilter: nf_tables: reject invalid set policy - - - 18-- 2024-01-18 Pablo Neira Ayuso netdev Accepted
« 1 2 ... 3 4 516 17 »