summaryrefslogtreecommitdiffstats
path: root/net/ipv4/netfilter
Commit message (Expand)AuthorAgeFilesLines
* treewide: Remove uninitialized_var() usageKees Cook2023-08-111-3/+3
* netfilter: nftables: add nft_parse_register_load() and use itPablo Neira Ayuso2023-05-301-9/+9
* netfilter: nft_fib: Fix for rpath check with VRF devicesPhil Sutter2022-10-261-0/+3
* netfilter: ipt_CLUSTERIP: fix refcount leak in clusterip_tg_check()Xin Xiong2022-01-271-1/+4
* netfilter: x_tables: fix compat match/target pad out-of-bound writeFlorian Westphal2021-04-162-0/+4
* Revert "netfilter: x_tables: Update remaining dereference to RCU"Mark Tomlinson2021-03-302-2/+2
* Revert "netfilter: x_tables: Switch synchronization to RCU"Mark Tomlinson2021-03-302-14/+14
* netfilter: rpfilter: mask ecn bits before fib lookupGuillaume Nault2021-01-271-1/+1
* netfilter: x_tables: Update remaining dereference to RCUSubash Abhinov Kasiviswanathan2021-01-122-2/+2
* netfilter: x_tables: Switch synchronization to RCUSubash Abhinov Kasiviswanathan2020-12-302-14/+14
* netfilter: use actual socket sk rather than skb sk when routing harderJason A. Donenfeld2020-11-185-5/+5
* netfilter: nf_log: missing vlan offload tag and protoPablo Neira Ayuso2020-10-292-4/+21
* netfilter: nf_conntrack_pptp: prevent buffer overflows in debug codePablo Neira Ayuso2020-06-031-5/+2
* netfilter: arp_tables: init netns pointer in xt_tgdtor_param structFlorian Westphal2020-01-231-9/+10
* netfilter: arp_tables: init netns pointer in xt_tgchk_param structFlorian Westphal2020-01-141-11/+16
* netfilter: masquerade: don't flush all conntracks if only one address deleted...Tan Hu2019-11-201-3/+19
* netfilter: Fix rpfilter dropping vrf packets by mistakeMiaohe Lin2019-08-161-0/+1
* netfilter: ipt_CLUSTERIP: fix warning unused variable cnAnders Roxell2019-03-231-1/+1
* netfilter: ipt_CLUSTERIP: fix sleep-in-atomic bug in clusterip_config_entry_p...Taehee Yoo2019-02-271-5/+14
* netfilter: nf_nat_snmp_basic: add missing length checks in ASN.1 cbsJann Horn2019-02-231-1/+6
* netfilter: ipt_CLUSTERIP: fix deadlock in netns exit routineTaehee Yoo2019-01-261-68/+87
* netfilter: ipt_CLUSTERIP: remove wrong WARN_ON_ONCE in netns exit routineTaehee Yoo2019-01-261-1/+0
* netfilter: ipt_CLUSTERIP: check MAC address when duplicate config is setTaehee Yoo2019-01-261-1/+2
* netfilter: nat: fix double register in masquerade modulesTaehee Yoo2018-12-171-7/+16
* netfilter: add missing error handling code for register functionsTaehee Yoo2018-12-173-7/+25
* netfilter: kconfig: nat related expression depend on nftables coreFlorian Westphal2018-08-311-3/+5
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextDavid S. Miller2018-07-204-880/+3
|\
| * netfilter: conntrack: remove l3proto abstractionFlorian Westphal2018-07-174-781/+3
| * netfilter: conntrack: remove get_timeout() indirectionFlorian Westphal2018-07-161-5/+11
| * netfilter: conntrack: remove get_l4proto indirection from l3 protocol trackersFlorian Westphal2018-07-161-30/+0
| * netfilter: conntrack: remove invert_tuple indirection from l3 protocol trackersFlorian Westphal2018-07-162-12/+1
| * netfilter: conntrack: remove pkt_to_tuple indirection from l3 protocol trackersFlorian Westphal2018-07-161-17/+0
| * netfilter: conntrack: remove ctnetlink callbacks from l3 protocol trackersFlorian Westphal2018-07-161-47/+0
* | Merge ra.kernel.org:/pub/scm/linux/kernel/git/torvalds/linuxDavid S. Miller2018-07-202-6/+13
|\ \ | |/ |/|
| * netfilter: nf_tproxy: fix possible non-linear access to transport headerMáté Eckl2018-07-061-6/+12
| * netfilter: x_tables: set module owner for icmp(6) matchesFlorian Westphal2018-07-051-0/+1
* | netfilter: check if the socket netns is correct.Flavio Leitner2018-06-281-4/+4
|/
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nfDavid S. Miller2018-06-111-0/+1
|\
| * netfilter: x_tables: initialise match/target check parameter structFlorian Westphal2018-06-081-0/+1
* | netfilter: Libify xt_TPROXYMáté Eckl2018-06-033-1/+152
* | netfilter: nat: merge ipv4/ipv6 masquerade code into main nat moduleFlorian Westphal2018-05-293-11/+2
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextDavid S. Miller2018-05-234-162/+115
|\ \
| * | netfilter: nf_nat: add nat type hooks to nat coreFlorian Westphal2018-05-233-112/+106
| * | netfilter: nf_tables: allow chain type to override hook registerFlorian Westphal2018-05-231-6/+13
| * | netfilter: xtables: allow table definitions not backed by hook_opsFlorian Westphal2018-05-231-1/+4
| * | netfilter: nf_nat: move common nat code to nat coreFlorian Westphal2018-05-231-53/+2
* | | Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller2018-05-212-1/+2
|\ \ \ | |/ / |/| / | |/
| * net/ipv4: Initialize proto and ports in flow structDavid Ahern2018-05-171-1/+1
| * netfilter: x_tables: add module alias for icmp matchesFlorian Westphal2018-05-081-0/+1
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextDavid S. Miller2018-05-0612-279/+20
|\ \ | |/ |/|