summaryrefslogtreecommitdiffstats
path: root/net/ipv6/netfilter
Commit message (Expand)AuthorAgeFilesLines
* netfilter: complete validation of user inputEric Dumazet2024-04-101-0/+4
* netfilter: validate user input for expected lengthEric Dumazet2024-04-041-0/+4
* inet: inet_defrag: prevent sk release while still in useFlorian Westphal2024-03-281-1/+1
* net: adopt skb_network_offset() and similar helpersEric Dumazet2024-03-041-2/+2
* ipv6: annotate data-races around cnf.hop_limitEric Dumazet2024-03-011-2/+2
* netfilter: xtables: allow xtables-nft only buildsFlorian Westphal2024-01-292-7/+15
* netfilter: bridge: replace physindev with physinif in nf_bridge_infoPavel Tikhomirov2024-01-171-3/+8
* netfilter: propagate net to nf_bridge_get_physindevPavel Tikhomirov2024-01-171-1/+1
* netfilter: add missing module descriptionsFlorian Westphal2023-11-084-0/+4
* netfilter: xt_mangle: only check verdict part of return valueFlorian Westphal2023-10-181-4/+5
* Merge tag 'sysctl-6.6-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/m...Linus Torvalds2023-08-291-1/+2
|\
| * netfilter: Update to register_net_sysctl_szJoel Granados2023-08-151-1/+2
* | netfilter: defrag: Add glue hooks for enabling/disabling defragDaniel Xu2023-07-281-0/+11
|/
* xtables: move icmp/icmpv6 logic to xt_tcpudpFlorian Westphal2023-03-221-67/+1
* netfilter: tproxy: fix deadlock due to missing BH disableFlorian Westphal2023-03-061-1/+1
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nfJakub Kicinski2023-02-222-3/+8
|\
| * netfilter: x_tables: fix percpu counter block leak on error path when creatin...Pavel Tikhomirov2023-02-221-0/+4
| * netfilter: ebtables: fix table blob use-after-freeFlorian Westphal2023-02-221-2/+1
| * netfilter: ip6t_rpfilter: Fix regression with VRF interfacesPhil Sutter2023-02-221-1/+3
* | netfilter: let reset rules clean out conntrack entriesFlorian Westphal2023-02-171-0/+1
|/
* netfilter: nf_tables: Extend nft_expr_ops::dump callback parametersPhil Sutter2022-11-151-1/+2
* net: dropreason: add SKB_DROP_REASON_DUP_FRAGEric Dumazet2022-10-311-1/+1
* netfilter: rpfilter/fib: Set ->flowic_uid correctly for user namespaces.Guillaume Nault2022-10-192-0/+3
* netfilter: rpfilter/fib: Populate flowic_l3mdev fieldPhil Sutter2022-10-122-9/+5
* netfilter: nft_fib: Fix for rpath check with VRF devicesPhil Sutter2022-09-281-1/+5
* tcp: Access &tcp_hashinfo via net.Kuniyuki Iwashima2022-09-202-6/+6
* netfilter: nf_defrag_ipv6: allow nf_conntrack_frag6_high_thresh increasesEric Dumazet2022-08-241-1/+0
* netfilter: conntrack: skip verification of zero UDP checksumKevin Mitchell2022-05-131-2/+2
* netfilter: nft_fib: reverse path filter for policy-based routing on iifPablo Neira Ayuso2022-04-111-0/+4
* netfilter: nft_fib: add reduce supportFlorian Westphal2022-03-201-0/+2
* netfilter: nf_tables: do not reduce read-only expressionsPablo Neira Ayuso2022-03-202-0/+2
* net: ipv6: Handle delivery_time in ipv6 defragMartin KaFai Lau2022-03-031-0/+1
* netfilter: Remove flowtable relicsGeert Uytterhoeven2022-01-273-7/+0
* netfilter: flowtable: remove ipv4/ipv6 modulesFlorian Westphal2021-12-232-44/+2
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netDavid S. Miller2021-10-221-42/+6
|\
| * netfilter: ip6t_rt: fix rt0_hdr parsing in rt_mt6Xin Long2021-10-141-42/+6
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextDavid S. Miller2021-10-186-44/+14
|\ \ | |/ |/|
| * netfilter: ip6tables: allow use of ip6t_do_table as hookfnFlorian Westphal2021-10-146-44/+14
* | netfilter: conntrack: fix boot failure with nf_conntrack.enable_hooks=1Florian Westphal2021-09-282-17/+10
|/
* netfilter: ip6_tables: zero-initialize fragment offsetJeremy Sowden2021-09-151-0/+1
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nfJakub Kicinski2021-09-031-3/+1
|\
| * netfilter: socket: icmp6: fix use-after-scopeBenjamin Hesmans2021-09-031-3/+1
* | netfilter: x_tables: never register tables by defaultFlorian Westphal2021-08-095-51/+56
|/
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2021-06-181-4/+18
|\
| * netfilter: nft_fib_ipv6: skip ipv6 packets from any to link-localFlorian Westphal2021-06-091-4/+18
* | netfilter: nf_tables: add and use nft_sk helperFlorian Westphal2021-05-291-1/+1
* | netfilter: x_tables: reduce xt_action_param by 8 byteFlorian Westphal2021-05-291-1/+1
|/
* netfilter: allow to turn off xtables compat layerFlorian Westphal2021-04-261-8/+8
* netfilter: ip6_tables: pass table pointer via nf_hook_opsFlorian Westphal2021-04-266-54/+61
* netfilter: xt_nat: pass table to hookfnFlorian Westphal2021-04-261-10/+35