summaryrefslogtreecommitdiffstats
path: root/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* ipvs: avoid stat macros calls from preemptible contextFedor Pchelkin2024-01-171-2/+2
* netfilter: nf_tables: reject NFT_SET_CONCAT with not field length descriptionPablo Neira Ayuso2024-01-171-1/+5
* netfilter: nf_tables: skip dead set elements in netlink dumpPablo Neira Ayuso2024-01-171-1/+1
* netfilter: nf_tables: do not allow mismatch field size and set key lengthPablo Neira Ayuso2024-01-171-1/+5
* netfilter: nf_tables: check if catch-all set element is active in next genera...Pablo Neira Ayuso2024-01-171-1/+1
* netfilter: propagate net to nf_bridge_get_physindevPavel Tikhomirov2024-01-174-12/+13
* netfilter: nf_queue: remove excess nf_bridge variablePavel Tikhomirov2024-01-171-3/+1
* netfilter: nfnetlink_log: use proper helper for fetching physinifPavel Tikhomirov2024-01-171-4/+4
* netfilter: nft_limit: do not ignore unsupported flagsPablo Neira Ayuso2024-01-171-7/+12
* netfilter: nf_tables: bail out if stateful expression provides no .clonePablo Neira Ayuso2024-01-171-8/+7
* netfilter: nf_tables: validate .maxattr at expression registrationPablo Neira Ayuso2024-01-171-0/+3
* netfilter: nf_tables: reject invalid set policyPablo Neira Ayuso2024-01-171-1/+9
* Merge tag 'net-next-6.8' of git://git.kernel.org/pub/scm/linux/kernel/git/net...Linus Torvalds2024-01-115-36/+131
|\
| * Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2024-01-044-4/+5
| |\
| * | netfilter: nf_tables: validate chain type update if availablePablo Neira Ayuso2023-12-221-1/+10
| * | netfilter: ctnetlink: support filtering by zoneFelix Huettner2023-12-221-4/+8
| * | netfilter: nf_tables: mark newset as dead on transaction abortFlorian Westphal2023-12-221-0/+1
| * | netfilter: nft_set_pipapo: prefer gfp_kernel allocationFlorian Westphal2023-12-221-1/+1
| * | netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requestsPhil Sutter2023-12-221-17/+81
| * | netfilter: nf_tables: Introduce nft_set_dump_ctx_init()Phil Sutter2023-12-221-16/+33
| * | netfilter: nf_tables: Pass const set to nft_get_set_elemPhil Sutter2023-12-221-3/+3
| * | Revert BPF token-related functionalityAndrii Nakryiko2023-12-191-1/+1
| * | Merge tag 'for-netdev' of https://git.kernel.org/pub/scm/linux/kernel/git/bpf...Jakub Kicinski2023-12-181-1/+1
| |\ \
| | * | bpf: take into account BPF token when fetching helper protosAndrii Nakryiko2023-12-061-1/+1
| * | | ipv6: annotate data-races around np->mcast_oifEric Dumazet2023-12-111-1/+1
| * | | Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2023-12-077-19/+40
| |\ \ \ | | |/ / | |/| |
| * | | tcp: Don't pass cookie to __cookie_v[46]_check().Kuniyuki Iwashima2023-11-291-2/+2
* | | | Merge tag 'header_cleanup-2024-01-10' of https://evilpiepirate.org/git/bcachefsLinus Torvalds2024-01-104-0/+5
|\ \ \ \ | |_|_|/ |/| | |
| * | | Kill sched.h dependency on rcupdate.hKent Overstreet2023-12-274-0/+5
| | |/ | |/|
* | | netfilter: nft_immediate: drop chain reference counter on errorPablo Neira Ayuso2024-01-031-1/+1
* | | netfilter: nf_nat: fix action not being set for all ct statesBrad Cowie2024-01-031-1/+2
* | | netfilter: nf_tables: skip set commit for deleted/destroyed setsPablo Neira Ayuso2023-12-201-1/+1
* | | netfilter: nf_tables: set transport offset from mac header for netdev/egressPablo Neira Ayuso2023-12-201-1/+1
|/ /
* | netfilter: xt_owner: Fix for unsafe access of sk->sk_socketPhil Sutter2023-12-061-4/+12
* | netfilter: nf_tables: validate family when identifying table via handlePablo Neira Ayuso2023-12-061-2/+3
* | netfilter: nf_tables: bail out on mismatching dynset and set expressionsPablo Neira Ayuso2023-12-061-4/+9
* | netfilter: nf_tables: fix 'exist' matching on bigendian archesFlorian Westphal2023-12-062-4/+8
* | netfilter: nft_set_pipapo: skip inactive elements during set walkFlorian Westphal2023-12-061-0/+3
* | netfilter: bpf: fix bad registration on nf_defragD. Wythe2023-12-061-5/+5
|/
* netfilter: nf_tables: split async and sync catchall in two functionsPablo Neira Ayuso2023-11-141-25/+30
* netfilter: ipset: fix race condition between swap/destroy and kernel side add...Jozsef Kadlecsik2023-11-141-7/+7
* netfilter: nf_tables: bogus ENOENT when destroying element which does not existPablo Neira Ayuso2023-11-141-2/+3
* netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval()Dan Carpenter2023-11-142-3/+4
* netfilter: nft_set_rbtree: Remove unused variable nft_netYang Li2023-11-141-2/+0
* Merge tag 'nf-23-11-08' of git://git.kernel.org/pub/scm/linux/kernel/git/netf...Jakub Kicinski2023-11-0827-7/+69
|\
| * netfilter: nat: fix ipv6 nat redirect with mapped and scoped addressesFlorian Westphal2023-11-081-1/+26
| * netfilter: xt_recent: fix (increase) ipv6 literal buffer lengthMaciej Żenczykowski2023-11-081-1/+1
| * ipvs: add missing module descriptionsFlorian Westphal2023-11-0816-0/+16
| * netfilter: nf_tables: remove catchall element in GC sync pathPablo Neira Ayuso2023-11-081-5/+17
| * netfilter: add missing module descriptionsFlorian Westphal2023-11-089-0/+9