Show patches with: Submitter = Pablo Neira Ayuso       |    Archived = No       |   1732 patches
« 1 2 3 417 18 »
Patch Series A/R/T S/W/F Date Submitter Delegate State
[net-next,7/7] netfilter: nf_tables: Only use nf_skip_indirect_calls() when MITIGATION_RETPOLINE [net-next,1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc 1 - - 1711 2025-03-23 Pablo Neira Ayuso netdev Accepted
[net-next,6/7] netfilter: socket: Lookup orig tuple for IPv6 SNAT [net-next,1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc - 1 - 172- 2025-03-23 Pablo Neira Ayuso netdev Accepted
[net-next,5/7] netfilter: xtables: Use strscpy() instead of strscpy_pad() [net-next,1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc - 1 - 181- 2025-03-23 Pablo Neira Ayuso netdev Accepted
[net-next,4/7] netfilter: nfnetlink_queue: Initialize ctx to avoid memory allocation error [net-next,1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc - - - 18-1 2025-03-23 Pablo Neira Ayuso netdev Accepted
[net-next,3/7] netfilter: fib: avoid lookup if socket is available [net-next,1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc - - - 172- 2025-03-23 Pablo Neira Ayuso netdev Accepted
[net-next,2/7] netfilter: conntrack: Bound nf_conntrack sysctl writes [net-next,1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc - - - 181- 2025-03-23 Pablo Neira Ayuso netdev Accepted
[net-next,1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc [net-next,1/7] netfilter: xt_hashlimit: replace vmalloc calls with kvmalloc - 1 - 181- 2025-03-23 Pablo Neira Ayuso netdev Accepted
[net-next,0/7] Netfilter updates for net-next - - - --- 2025-03-23 Pablo Neira Ayuso netdev Accepted
[net,4/4] netfilter: nft_exthdr: fix offset with ipv4_find_option() [net,1/4] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() - 1 - --- 2025-03-13 Pablo Neira Ayuso netdev Accepted
[net,3/4] ipvs: prevent integer overflow in do_ip_vs_get_ctl() [net,1/4] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() 1 - - 1-1 2025-03-13 Pablo Neira Ayuso netdev Accepted
[net,2/4] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted [net,1/4] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() - - - 1-1 2025-03-13 Pablo Neira Ayuso netdev Accepted
[net,1/4] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() [net,1/4] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() - 1 - 1-1 2025-03-13 Pablo Neira Ayuso netdev Accepted
[net,v20/4] Netfilter/IPVS fixes for net [net,1/4] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() - - - 1-1 2025-03-13 Pablo Neira Ayuso netdev Accepted
[net,3/3] ipvs: prevent integer overflow in do_ip_vs_get_ctl() [net,1/3] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() 1 - - 181- 2025-03-12 Pablo Neira Ayuso netdev Superseded
[net,2/3] selftests: netfilter: skip br_netfilter queue tests if kernel is tainted [net,1/3] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() - - - 181- 2025-03-12 Pablo Neira Ayuso netdev Superseded
[net,1/3] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() [net,1/3] netfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert_tree() - 1 - 181- 2025-03-12 Pablo Neira Ayuso netdev Superseded
[net,0/3] Netfilter/IPVS fixes for net - - - --- 2025-03-12 Pablo Neira Ayuso netdev Superseded
[net,3/3] netfilter: nf_tables: make destruction work queue pernet [net,1/3] netfilter: nft_ct: Use __refcount_inc() for per-CPU nft_ct_pcpu_template. - - - 1621 2025-03-06 Pablo Neira Ayuso netdev Accepted
[net,2/3] netfilter: nf_conncount: garbage collection is not skipped when jiffies wrap around [net,1/3] netfilter: nft_ct: Use __refcount_inc() for per-CPU nft_ct_pcpu_template. - 1 - 1612 2025-03-06 Pablo Neira Ayuso netdev Accepted
[net,1/3] netfilter: nft_ct: Use __refcount_inc() for per-CPU nft_ct_pcpu_template. [net,1/3] netfilter: nft_ct: Use __refcount_inc() for per-CPU nft_ct_pcpu_template. - 1 - 1711 2025-03-06 Pablo Neira Ayuso netdev Accepted
[net,0/3] Netfilter fixes for net - - - --- 2025-03-06 Pablo Neira Ayuso netdev Accepted
[net,1/1] Revert "netfilter: flowtable: teardown flow if cached mtu is stale" [net,1/1] Revert "netfilter: flowtable: teardown flow if cached mtu is stale" - - - 181- 2025-02-13 Pablo Neira Ayuso netdev Accepted
[net,0/1] Netfilter fixes for net - - - --- 2025-02-13 Pablo Neira Ayuso netdev Accepted
[net,1/1] netfilter: nf_tables: reject mismatching sum of field_len with set key length [net,1/1] netfilter: nf_tables: reject mismatching sum of field_len with set key length - 1 - 1711 2025-01-30 Pablo Neira Ayuso netdev Accepted
[net,0/1] Netfilter fixes for net - - - --- 2025-01-30 Pablo Neira Ayuso netdev Accepted
[net-next,14/14] netfilter: flowtable: add CLOSING state [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 163- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,13/14] netfilter: flowtable: teardown flow if cached mtu is stale [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,12/14] netfilter: conntrack: rework offload nf_conn timeout extension logic [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 172- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,11/14] netfilter: conntrack: remove skb argument from nf_ct_refresh [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,10/14] netfilter: nft_flow_offload: update tcp state flags under lock [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,09/14] netfilter: nft_flow_offload: clear tcp MAXACK flag before moving to slowpath [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,08/14] netfilter: nf_tables: Simplify chain netdev notifier [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,07/14] netfilter: nf_tables: Tolerate chains with no remaining hooks [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,06/14] netfilter: nf_tables: Compare netdev hooks based on stored name [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,05/14] netfilter: nf_tables: Use stored ifname in netdev hook dumps [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,04/14] netfilter: nf_tables: Store user-defined hook ifname [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,03/14] netfilter: nf_tables: Flowtable hook's pf value never varies [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,02/14] netfilter: br_netfilter: remove unused conditional and dead code [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - 1 - 181- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 172- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,v2,00/14] Netfilter updates for net-next - - - --- 2025-01-19 Pablo Neira Ayuso netdev Accepted
[net-next,14/14] netfilter: flowtable: add CLOSING state [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 153- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,13/14] netfilter: flowtable: teardown flow if cached mtu is stale [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,12/14] netfilter: conntrack: rework offload nf_conn timeout extension logic [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 1521 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,11/14] netfilter: conntrack: remove skb argument from nf_ct_refresh [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,10/14] netfilter: nft_flow_offload: update tcp state flags under lock [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,09/14] netfilter: nft_flow_offload: clear tcp MAXACK flag before moving to slowpath [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,08/14] netfilter: nf_tables: Simplify chain netdev notifier [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,07/14] netfilter: nf_tables: Tolerate chains with no remaining hooks [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,06/14] netfilter: nf_tables: Compare netdev hooks based on stored name [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,05/14] netfilter: nf_tables: Use stored ifname in netdev hook dumps [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,04/14] netfilter: nf_tables: Store user-defined hook ifname [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,03/14] netfilter: nf_tables: Flowtable hook's pf value never varies [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,02/14] netfilter: br_netfilter: remove unused conditional and dead code [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - 1 - 171- 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend [net-next,01/14] netfilter: nf_tables: fix set size with rbtree backend - - - 1521 2025-01-16 Pablo Neira Ayuso netdev Superseded
[net-next,00/14] Netfilter updates for net-next - - - --- 2025-01-16 Pablo Neira Ayuso netdev Changes Requested
[net-next,4/4] netfilter: conntrack: add conntrack event timestamp [net-next,1/4] netfilter: nf_tables: remove the genmask parameter - - - 172- 2025-01-11 Pablo Neira Ayuso netdev Accepted
[net-next,3/4] netfilter: xt_hashlimit: htable_selective_cleanup() optimization [net-next,1/4] netfilter: nf_tables: remove the genmask parameter - - - 181- 2025-01-11 Pablo Neira Ayuso netdev Accepted
[net-next,2/4] ipvs: speed up reads from ip_vs_conn proc file [net-next,1/4] netfilter: nf_tables: remove the genmask parameter 1 - - 181- 2025-01-11 Pablo Neira Ayuso netdev Accepted
[net-next,1/4] netfilter: nf_tables: remove the genmask parameter [net-next,1/4] netfilter: nf_tables: remove the genmask parameter - 1 - 181- 2025-01-11 Pablo Neira Ayuso netdev Accepted
[net-next,0/4] Netfilter/IPVS updates for net-next - - - --- 2025-01-11 Pablo Neira Ayuso netdev Accepted
[net,2/2] netfilter: conntrack: clamp maximum hashtable size to INT_MAX [net,1/2] netfilter: nf_tables: imbalance in flowtable binding - - - 181- 2025-01-09 Pablo Neira Ayuso netdev Accepted
[net,1/2] netfilter: nf_tables: imbalance in flowtable binding [net,1/2] netfilter: nf_tables: imbalance in flowtable binding - - 1 172- 2025-01-09 Pablo Neira Ayuso netdev Accepted
[nf] netfilter: conntrack: clamp maximum hashtable size to INT_MAX [nf] netfilter: conntrack: clamp maximum hashtable size to INT_MAX - - - 162- 2025-01-09 Pablo Neira Ayuso netdev Handled Elsewhere
[net,0/2] Netfilter fixes for net - - - --- 2025-01-09 Pablo Neira Ayuso netdev Accepted
[net,1/1] netfilter: nft_set_hash: unaligned atomic read on struct nft_set_ext [net,1/1] netfilter: nft_set_hash: unaligned atomic read on struct nft_set_ext - - - 181- 2024-12-24 Pablo Neira Ayuso netdev Accepted
[net,0/1] Netfilter fixes for net - - - --- 2024-12-24 Pablo Neira Ayuso netdev Accepted
[net,2/2] netfilter: ipset: Fix for recursive locking warning [net,1/2] ipvs: Fix clamp() of ip_vs_conn_tab on small memory systems - - - 18-1 2024-12-18 Pablo Neira Ayuso netdev Accepted
[net,1/2] ipvs: Fix clamp() of ip_vs_conn_tab on small memory systems [net,1/2] ipvs: Fix clamp() of ip_vs_conn_tab on small memory systems 1 1 1 1711 2024-12-18 Pablo Neira Ayuso netdev Accepted
[net,0/2] Netfilter/IPVS fixes for net - - - --- 2024-12-18 Pablo Neira Ayuso netdev Accepted
[net,3/3] netfilter: nf_tables: do not defer rule destruction via call_rcu [net,1/3] selftests: netfilter: Stabilize rpath.sh - - - 181- 2024-12-11 Pablo Neira Ayuso netdev Accepted
[net,2/3] netfilter: IDLETIMER: Fix for possible ABBA deadlock [net,1/3] selftests: netfilter: Stabilize rpath.sh - - - 172- 2024-12-11 Pablo Neira Ayuso netdev Accepted
[net,1/3] selftests: netfilter: Stabilize rpath.sh [net,1/3] selftests: netfilter: Stabilize rpath.sh - - - 18-1 2024-12-11 Pablo Neira Ayuso netdev Accepted
[net,0/3] Netfilter fixes for net - - - --- 2024-12-11 Pablo Neira Ayuso netdev Accepted
[net,6/6] netfilter: nft_set_hash: skip duplicated elements pending gc run [net,1/6] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - 1 181- 2024-12-05 Pablo Neira Ayuso netdev Accepted
[net,5/6] netfilter: ipset: Hold module reference while requesting a module [net,1/6] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() 1 - - 18-1 2024-12-05 Pablo Neira Ayuso netdev Accepted
[net,4/6] netfilter: nft_inner: incorrect percpu area handling under softirq [net,1/6] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 172- 2024-12-05 Pablo Neira Ayuso netdev Accepted
[net,3/6] netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup level [net,1/6] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 181- 2024-12-05 Pablo Neira Ayuso netdev Accepted
[net,2/6] netfilter: x_tables: fix LED ID check in led_tg_check() [net,1/6] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 18-1 2024-12-05 Pablo Neira Ayuso netdev Accepted
[net,1/6] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() [net,1/6] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() 1 - - 181- 2024-12-05 Pablo Neira Ayuso netdev Accepted
[net,0/6] Netfilter fixes for net - - - --- 2024-12-05 Pablo Neira Ayuso netdev Accepted
[net,4/4] netfilter: nft_inner: incorrect percpu area handling under softirq [net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 172- 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net,3/4] netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup level [net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 181- 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net,2/4] netfilter: x_tables: fix LED ID check in led_tg_check() [net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 18-1 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() [net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() 1 - - 181- 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net,v2,0/4] Netfilter fixes for net - - - --- 2024-11-28 Pablo Neira Ayuso netdev Changes Requested
[net,4/4] netfilter: nft_inner: incorrect percpu area handling under softirq [net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 1111 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net,3/4] netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup level [net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 1111 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net,2/4] netfilter: x_tables: fix LED ID check in led_tg_check() [net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() - - - 11-2 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() [net,1/4] ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init() 1 - - 1211 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net,0/4] Netfilter fixes for net - - - --- 2024-11-28 Pablo Neira Ayuso netdev Superseded
[net-next,14/14] netfilter: bitwise: add support for doing AND, OR and XOR directly [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 181- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,13/14] netfilter: bitwise: rename some boolean operation functions [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 172- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,12/14] netfilter: nf_dup4: Convert nf_dup_ipv4_route() to dscp_t. [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 181- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,11/14] netfilter: nft_fib: Convert nft_fib4_eval() to dscp_t. [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 181- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,10/14] netfilter: rpfilter: Convert rpfilter_mt() to dscp_t. [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 181- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,09/14] netfilter: flow_offload: Convert nft_flow_route() to dscp_t. [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 172- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,08/14] netfilter: ipv4: Convert ip_route_me_harder() to dscp_t. [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 181- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,07/14] netfilter: nf_tables: allocate element update information dynamically [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 172- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,06/14] netfilter: nf_tables: switch trans_elem to real flex array [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 172- 2024-11-15 Pablo Neira Ayuso netdev Accepted
[net-next,05/14] netfilter: nf_tables: prepare nft audit for set element compaction [net-next,01/14] netfilter: nfnetlink: Report extack policy errors for batched ops - - - 172- 2024-11-15 Pablo Neira Ayuso netdev Accepted
« 1 2 3 417 18 »