summaryrefslogtreecommitdiffstats
path: root/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* netfilter: conntrack: unify established states for SCTP pathsSriram Yagnaraman2023-02-012-62/+39
* netfilter: conntrack: fix vtag checks for ABORT/SHUTDOWN_COMPLETESriram Yagnaraman2023-02-011-9/+16
* netfilter: nft_set_rbtree: skip elements in transaction from garbage collectionPablo Neira Ayuso2023-02-011-1/+15
* netfilter: nft_set_rbtree: Switch to node list walk for overlap detectionPablo Neira Ayuso2023-02-011-127/+189
* netfilter: ipset: Fix overflow before widen in the bitmap_ip_create() function.Gavrilov Ilia2023-01-181-2/+2
* netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bitsPablo Neira Ayuso2023-01-181-1/+1
* netfilter: ipset: Rework long task execution when adding/deleting entriesJozsef Kadlecsik2023-01-1210-80/+67
* netfilter: ipset: fix hash:net,port,net hang with /0 subnetJozsef Kadlecsik2023-01-121-19/+21
* netfilter: nf_tables: honor set timeout and garbage collection updatesPablo Neira Ayuso2023-01-121-18/+45
* netfilter: nf_tables: perform type checking for existing setsPablo Neira Ayuso2023-01-121-1/+35
* netfilter: nf_tables: add function to create set stateful expressionsPablo Neira Ayuso2023-01-121-38/+68
* netfilter: nf_tables: consolidate set descriptionPablo Neira Ayuso2023-01-121-30/+28
* netfilter: flowtable: really fix NAT IPv6 offloadQingfang DENG2022-12-311-3/+3
* netfilter: conntrack: set icmpv6 redirects as RELATEDFlorian Westphal2022-12-311-0/+53
* netfilter: ctnetlink: fix compilation warning after data race fixes in ct markPablo Neira Ayuso2022-12-141-9/+10
* netfilter: nft_set_pipapo: Actually validate intervals in fields after the fi...Stefano Brivio2022-12-141-2/+3
* netfilter: flowtable_offload: add missing lockingFelix Fietkau2022-12-021-0/+4
* netfilter: ipset: restore allowing 64 clashing elements in hash:net,ifaceJozsef Kadlecsik2022-12-021-1/+1
* netfilter: ipset: regression in ip_set_hash_ip.cVishwanath Pai2022-12-021-5/+3
* netfilter: nf_tables: do not set up extensions for end intervalPablo Neira Ayuso2022-12-021-2/+4
* netfilter: conntrack: Fix data-races around ct markDaniel Xu2022-12-025-23/+29
* netfilter: Cleanup nft_net->module_list from nf_tables_exit_net()Shigeru Yoshida2022-11-161-1/+2
* netfilter: nfnetlink: fix potential dead lock in nfnetlink_rcv_msg()Ziyang Xuan2022-11-161-0/+1
* netfilter: ipset: enforce documented limit to prevent allocating huge memoryJozsef Kadlecsik2022-11-101-24/+6
* ipvs: fix WARNING in ip_vs_app_net_cleanup()Zhengchao Shao2022-11-101-2/+8
* ipvs: fix WARNING in __ip_vs_cleanup_batch()Zhengchao Shao2022-11-101-5/+21
* ipvs: use explicitly signed charsJason A. Donenfeld2022-11-101-2/+2
* netfilter: nf_tables: release flow rule object from commit pathPablo Neira Ayuso2022-11-101-3/+3
* netfilter: nf_tables: netlink notifier might race to release objectsPablo Neira Ayuso2022-11-101-0/+2
* netfilter: nf_tables: relax NFTA_SET_ELEM_KEY_END set flags requirementsPablo Neira Ayuso2022-10-291-2/+3
* netfilter: conntrack: revisit the gc initial rescheduling biasAntoine Tenart2022-10-261-4/+6
* netfilter: conntrack: fix the gc rescheduling delayAntoine Tenart2022-10-261-2/+8
* netfilter: nf_tables: fix percpu memory leak at nf_tables_addchain()Tetsuo Handa2022-09-281-0/+1
* netfilter: nf_tables: fix nft_counters_enabled underflow at nf_tables_addchain()Tetsuo Handa2022-09-281-4/+3
* netfilter: nfnetlink_osf: fix possible bogus match in nf_osf_find()Pablo Neira Ayuso2022-09-281-1/+3
* netfilter: nf_conntrack_irc: Tighten matching on DCC messageDavid Leadbeater2022-09-281-6/+28
* netfilter: nf_conntrack_sip: fix ct_sip_walk_headersIgor Ryzhov2022-09-281-2/+2
* netfilter: nf_conntrack_irc: Fix forged IP logicDavid Leadbeater2022-09-151-2/+3
* netfilter: nf_tables: clean up hook list when offload flags check failsPablo Neira Ayuso2022-09-151-1/+3
* netfilter: conntrack: work around exceeded receive windowFlorian Westphal2022-09-151-0/+31
* netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to yGeert Uytterhoeven2022-09-051-1/+0
* net: Fix data-races around sysctl_[rw]mem_(max|default).Kuniyuki Iwashima2022-08-311-2/+2
* netfilter: flowtable: fix stuck flows on cleanup due to pending workPablo Neira Ayuso2022-08-312-4/+11
* netfilter: flowtable: add function to invoke garbage collection immediatelyPablo Neira Ayuso2022-08-311-3/+9
* netfilter: nf_tables: disallow binding to already bound chainPablo Neira Ayuso2022-08-311-0/+2
* netfilter: nf_tables: disallow jump to implicit chain from set elementPablo Neira Ayuso2022-08-311-0/+4
* netfilter: nf_tables: upfront validation of data via nft_data_init()Pablo Neira Ayuso2022-08-315-113/+124
* netfilter: bitwise: improve error goto labelsJeremy Sowden2022-08-311-5/+6
* netfilter: nft_cmp: optimize comparison for 16-bytesPablo Neira Ayuso2022-08-312-2/+116
* netfilter: nf_tables: consolidate rule verdict trace callPablo Neira Ayuso2022-08-311-7/+32