summaryrefslogtreecommitdiffstats
path: root/include/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* netfilter: nat: fix crash when conntrack entry is re-usedFlorian Westphal2016-11-241-3/+3
* netfilter: nf_tables: fix inconsistent element expiration calculationAnders K. Pedersen2016-11-241-1/+1
* netfilter: nat: switch to new rhlist interfaceFlorian Westphal2016-11-241-1/+1
* netfilter: conntrack: avoid excess memory allocationFlorian Westphal2016-10-271-2/+1
* netfilter: nf_tables: fix type mismatch with error return from nft_parse_u32_...John W. Linville2016-10-271-1/+1
* netfilter: nf_tables: fix *leak* when expr clone failLiping Zhang2016-10-271-2/+4
* netfilter: merge fixup for "nf_tables_netdev: remove redundant ip_hdr assignm...Stephen Rothwell2016-10-051-1/+0
* Merge branch 'master' of git://git.kernel.org/pub/scm/linux/kernel/git/davem/...Pablo Neira Ayuso2016-09-253-0/+22
|\
| * Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller2016-09-231-0/+14
| |\
| | * netfilter: synproxy: Check oom when adding synproxy and seqadj ct extensionsGao Feng2016-09-131-0/+14
| * | Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller2016-09-122-0/+8
| |\|
| | * netfilter: nft_meta: improve the validity check of pkttype set exprLiping Zhang2016-08-251-0/+4
| | * netfilter: nft_reject: restrict to INPUT/FORWARD/OUTPUTLiping Zhang2016-08-251-0/+4
* | | netfilter: nft_log: complete NFTA_LOG_FLAGS attr supportLiping Zhang2016-09-251-8/+3
* | | netfilter: nf_tables: add range expressionPablo Neira Ayuso2016-09-251-0/+3
* | | netfilter: replace list_head with single linked listAaron Conole2016-09-251-2/+1
* | | netfilter: nf_queue: whitespace cleanupAaron Conole2016-09-251-4/+4
* | | netfilter: bridge: add and use br_nf_hook_threshFlorian Westphal2016-09-241-0/+6
* | | netfilter: nf_queue: improve queue range support for bridge familyLiping Zhang2016-09-231-13/+43
* | | netfilter: nf_tables: validate maximum value of u32 netlink attributesLaura Garcia Liebana2016-09-231-0/+1
* | | netfilter: nf_queue: get rid of dependency on IP6_NF_IPTABLESLiping Zhang2016-09-121-4/+0
* | | netfilter: nf_tables: don't drop IPv6 packets that cannot parse transportPablo Neira Ayuso2016-09-121-4/+2
* | | netfilter: nf_tables_bridge: use nft_set_pktinfo_ipv{4, 6}_validatePablo Neira Ayuso2016-09-121-7/+0
* | | netfilter: introduce nft_set_pktinfo_{ipv4, ipv6}_validate()Pablo Neira Ayuso2016-09-122-0/+91
* | | netfilter: nf_tables_ipv6: setup pktinfo transport field on failure to parsePablo Neira Ayuso2016-09-121-2/+3
* | | netfilter: nf_tables: ensure proper initialization of nft_pktinfo fieldsPablo Neira Ayuso2016-09-123-0/+20
* | | netfilter: nf_conntrack: remove unused ctl_table_path member in nf_conntrack_...Liping Zhang2016-09-091-4/+0
|/ /
* | netfilter: log: Check param to avoid overflow in nf_log_setGao Feng2016-08-301-2/+1
* | netfilter: remove __nf_ct_kill_acct helperFlorian Westphal2016-08-301-10/+3
* | netfilter: conntrack: get rid of conntrack timerFlorian Westphal2016-08-301-5/+18
* | netfilter: don't rely on DYING bit to detect when destroy event was sentFlorian Westphal2016-08-301-5/+12
* | netfilter: nf_tables: honor NLM_F_EXCL flag in set element insertionPablo Neira Ayuso2016-08-261-1/+2
* | netfilter: conntrack: simplify the code by using nf_conntrack_get_htLiping Zhang2016-08-182-3/+20
* | netfilter: remove ip_conntrack* sysctl compat codePablo Neira Ayuso2016-08-131-8/+0
|/
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextDavid S. Miller2016-07-247-31/+40
|\
| * netfilter: connlabels: move set helper to xt_connlabelFlorian Westphal2016-07-221-2/+0
| * netfilter: conntrack: support a fixed size of 128 distinct labelsFlorian Westphal2016-07-221-12/+4
| * netfilter: Add helper array register/unregister functionsGao Feng2016-07-211-0/+15
| * netfilter: nf_tables: get rid of possible_net_t from set and basechainPablo Neira Ayuso2016-07-111-10/+11
| * netfilter: constify arg to is_dying/confirmedFlorian Westphal2016-07-111-2/+2
| * netfilter: nat: convert nat bysrc hash to rhashtableFlorian Westphal2016-07-112-1/+3
| * netfilter: move nat hlist_head to nf_connFlorian Westphal2016-07-113-5/+3
| * netfilter: conntrack: simplify early_dropFlorian Westphal2016-07-111-0/+1
| * netfilter: conntrack: fix race between nf_conntrack proc read and hash resizeLiping Zhang2016-07-111-0/+2
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/netDavid S. Miller2016-07-241-0/+8
|\ \ | |/ |/|
| * netfilter: nft_ct: fix expiration getterFlorian Westphal2016-07-081-0/+8
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextDavid S. Miller2016-07-065-33/+70
|\ \ | |/ |/|
| * netfilter: nf_tables: get rid of NFT_BASECHAIN_DISABLEDPablo Neira Ayuso2016-06-241-1/+0
| * netfilter: conntrack: allow increasing bucket size via sysctl tooFlorian Westphal2016-06-241-0/+1
| * netfilter: nf_tables: add generation mask to setsPablo Neira Ayuso2016-06-241-3/+5