summaryrefslogtreecommitdiffstats
path: root/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* netfilter: ipset: For set:list types, replaced elements must be zeroed outJozsef Kadlecsik2013-09-301-1/+3
* netfilter: ipset: Fix hash resizing with commentsJozsef Kadlecsik2013-09-301-5/+5
* netfilter: ipset: Support comments in hash-type ipsets.Oliver Smith2013-09-309-13/+30
* netfilter: ipset: Support comments in the list-type ipset.Oliver Smith2013-09-301-6/+12
* netfilter: ipset: Support comments in bitmap-type ipsets.Oliver Smith2013-09-304-9/+17
* netfilter: ipset: Support comments for ipset entries in the core.Oliver Smith2013-09-301-0/+14
* netfilter: ipset: Add hash:net,net module to kernel.Oliver Smith2013-09-304-9/+541
* netfilter: ipset: Kconfig: ipset needs NETFILTER_NETLINKJozsef Kadlecsik2013-09-301-1/+1
* netfilter: ipset: list:set: make sure all elements are checked by the gcJozsef Kadlecsik2013-09-301-2/+5
* netfilter: ipset: Support extensions which need a per data destroy functionJozsef Kadlecsik2013-09-303-38/+90
* netfilter: ipset: Generalize extensions supportJozsef Kadlecsik2013-09-3013-749/+105
* netfilter: ipset: Move extension data to set structureJozsef Kadlecsik2013-09-3013-278/+244
* netfilter: ipset: Rename extension offset ids to extension idsJozsef Kadlecsik2013-09-306-35/+35
* netfilter: ipset: Prepare ipset to support multiple networks for hash typesJozsef Kadlecsik2013-09-305-46/+48
* netfilter: ipset: Introduce new operation to get both setname and familyJozsef Kadlecsik2013-09-301-0/+17
* netfilter: ipset: order matches and targets separatedly in xt_set.cJozsef Kadlecsik2013-09-301-92/+96
* netfilter: ipset: Support package fragments for IPv4 protos without portsAnders K. Pedersen2013-09-301-1/+17
* netfilter: ipset: Fix "may be used uninitialized" warningsJozsef Kadlecsik2013-09-309-12/+12
* netfilter: ipset: Rename simple macro names to avoid namespace issues.Jozsef Kadlecsik2013-09-3013-162/+166
* netfilter: ipset: Fix sparse warnings due to missing rcu annotationsJozsef Kadlecsik2013-09-301-32/+55
* netfilter: ipset: Sparse warning about shadowed variable fixedJozsef Kadlecsik2013-09-301-1/+1
* netfilter: ipset: Don't call ip_nest_end needlessly in the error pathJozsef Kadlecsik2013-09-303-3/+3
* netfilter: xt_TCPMSS: lookup route from proper net namespaceGao feng2013-09-271-3/+5
* netfilter: xt_TCPMSS: Get mtu only if clamp-mss-to-pmtu is specifiedGao feng2013-09-271-34/+36
* netfilter: nf_ct_sip: extend RCU read lock in set_expected_rtp_rtcp()holger@eitzenberger.org2013-09-271-2/+4
* ip: generate unique IP identificator if local fragmentation is allowedAnsis Atteka2013-09-191-1/+1
* netfilter: nfnetlink_queue: use network skb for sequence adjustmentGao feng2013-09-171-1/+1
* netfilter: ipset: Fix serious failure in CIDR trackingOliver Smith2013-09-161-12/+16
* netfilter: ipset: Validate the set family and not the set type family at swap...Jozsef Kadlecsik2013-09-161-1/+1
* netfilter: ipset: Consistent userspace testing with nomatch flagJozsef Kadlecsik2013-09-165-10/+9
* netfilter: ipset: Skip really non-first fragments for IPv6 when getting port/...Jozsef Kadlecsik2013-09-161-2/+2
* netfilter: Fix build errors with xt_socket.cDavid S. Miller2013-09-051-0/+1
* netfilter: xt_TCPMSS: correct return value in tcpmss_mangle_packetPhil Oester2013-09-041-1/+1
* netfilter: synproxy_core: fix warning in __nf_ct_ext_add_length()Patrick McHardy2013-09-041-2/+2
* netfilter: ctnetlink: fix uninitialized variableFlorian Westphal2013-08-281-1/+1
* netfilter: add SYNPROXY core/targetPatrick McHardy2013-08-286-0/+480
* netfilter: nf_conntrack: make sequence number adjustments usuable without NATPatrick McHardy2013-08-289-328/+296
* Merge branch 'master' of git://git.kernel.org/pub/scm/linux/kernel/git/pablo/...David S. Miller2013-08-2018-271/+484
|\
| * netfilter: nfnetlink_queue: allow to attach expectations to conntracksPablo Neira Ayuso2013-08-133-16/+103
| * netfilter: ctnetlink: refactor ctnetlink_create_expectPablo Neira Ayuso2013-08-131-69/+87
| * netfilter: nf_conntrack: don't send destroy events from iteratorFlorian Westphal2013-08-093-37/+9
| * ipvs: ip_vs_sh: ip_vs_sh_get_port: check skb_header_pointer for NULLDaniel Borkmann2013-08-071-0/+6
| * ipvs: fixed spacing at for statementsDragos Foianu2013-08-061-4/+4
| * netfilter: tproxy: fix build with IP6_NF_IPTABLES=nFlorian Westphal2013-08-051-1/+1
| * netfilter: nf_nat: use per-conntrack locking for sequence number adjustmentsPatrick McHardy2013-07-311-13/+6
| * netfilter: nf_nat: change sequence number adjustments to 32 bitsPatrick McHardy2013-07-313-7/+7
| * netfilter: nf_nat: fix locking in nf_nat_seq_adjust()Patrick McHardy2013-07-311-1/+6
| * netfilter: nf_conntrack: remove duplicate code in ctnetlinkFlorian Westphal2013-07-312-28/+19
| * netfilter: tproxy: remove nf_tproxy_core.hFlorian Westphal2013-07-312-6/+220
| * netfilter: tproxy: remove nf_tproxy_core, keep tw sk assigned to skbFlorian Westphal2013-07-314-82/+14