summaryrefslogtreecommitdiffstats
path: root/include/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* netfilter: nf_tables: replace BUG_ON by element length checkPablo Neira Ayuso2022-07-091-5/+9
* netfilter: nf_tables: avoid skb access on nf_stolenFlorian Westphal2022-06-271-6/+10
* netfilter: nf_tables: bail out early if hardware offload is not supportedPablo Neira Ayuso2022-06-061-1/+1
* netfilter: nf_tables: delete flowtable hooks via transaction listPablo Neira Ayuso2022-06-021-1/+0
* netfilter: conntrack: re-fetch conntrack after insertionFlorian Westphal2022-05-271-1/+6
* netfilter: nf_conncount: reduce unnecessary GCWilliam Tu2022-05-161-0/+1
* netfilter: conntrack: skip verification of zero UDP checksumKevin Mitchell2022-05-131-4/+17
* netfilter: prefer extension check to pointer checkFlorian Westphal2022-05-132-17/+16
* netfilter: conntrack: un-inline nf_ct_ecache_ext_addFlorian Westphal2022-05-131-25/+5
* netfilter: conntrack: add nf_ct_iter_data object for nf_ct_iterate_cleanup*()Pablo Neira Ayuso2022-05-131-3/+9
* netfilter: conntrack: remove unconfirmed listFlorian Westphal2022-05-131-1/+0
* netfilter: extensions: introduce extension genid countFlorian Westphal2022-05-132-16/+25
* netfilter: remove nf_ct_unconfirmed_destroy helperFlorian Westphal2022-05-131-3/+0
* netfilter: cttimeout: decouple unlink and free on netns destructionFlorian Westphal2022-05-131-8/+0
* netfilter: conntrack: include ecache dying list in dumpsFlorian Westphal2022-05-131-0/+2
* netfilter: ecache: use dedicated list for event redeliveryFlorian Westphal2022-05-132-3/+2
* netfilter: ecache: move to separate structureFlorian Westphal2022-04-081-2/+6
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2022-03-231-0/+18
|\
| * netfilter: flowtable: Fix QinQ and pppoe support for inet tablePablo Neira Ayuso2022-03-161-0/+18
* | netfilter: nft_fib: add reduce supportFlorian Westphal2022-03-201-0/+3
* | netfilter: nft_meta: extend reduce support to bridge familyFlorian Westphal2022-03-201-0/+2
* | netfilter: nf_tables: cancel tracking for clobbered destination registersPablo Neira Ayuso2022-03-202-0/+15
* | netfilter: nf_tables: do not reduce read-only expressionsPablo Neira Ayuso2022-03-201-0/+8
* | netfilter: conntrack: Add and use nf_ct_set_auto_assign_helper_warned()Phil Sutter2022-03-201-0/+1
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2022-03-171-1/+0
|\|
| * Revert "netfilter: conntrack: tag conntracks picked up in local out hook"Florian Westphal2022-03-081-1/+0
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2022-03-032-2/+6
|\|
| * net/sched: act_ct: Fix flow table lookup failure with no originating ifindexPaul Blakey2022-03-011-1/+5
| * netfilter: nf_queue: fix possible use-after-freeFlorian Westphal2022-03-011-1/+1
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2022-02-242-3/+1
|\|
| * netfilter: nf_tables_offload: incorrect flow offload action array sizePablo Neira Ayuso2022-02-202-3/+1
* | netfilter: nft_cmp: optimize comparison for 16-bytesPablo Neira Ayuso2022-02-091-0/+9
* | netfilter: cttimeout: use option structureFlorian Westphal2022-02-091-2/+6
* | netfilter: ecache: don't use nf_conn spinlockFlorian Westphal2022-02-091-1/+1
* | netfilter: conntrack: remove extension register apiFlorian Westphal2022-02-047-54/+0
* | netfilter: conntrack: handle ->destroy hook via nat_ops insteadFlorian Westphal2022-02-041-3/+0
* | netfilter: conntrack: move extension sizes into coreFlorian Westphal2022-02-041-1/+0
* | netfilter: conntrack: make all extensions 8-byte alignnedFlorian Westphal2022-02-041-4/+1
* | net/netfilter: Add unstable CT lookup helpers for XDP and TC-BPFKumar Kartikeya Dwivedi2022-01-181-0/+23
|/
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-nextJakub Kicinski2022-01-093-8/+49
|\
| * netfilter: nft_bitwise: track register operationsPablo Neira Ayuso2022-01-091-0/+2
| * netfilter: nf_tables: add register tracking infrastructurePablo Neira Ayuso2022-01-091-0/+12
| * netfilter: nf_tables: add NFT_REG32_NUMPablo Neira Ayuso2022-01-091-1/+3
| * netfilter: nf_tables: add rule blob layoutPablo Neira Ayuso2022-01-091-4/+18
| * netfilter: conntrack: avoid useless indirection during conntrack destructionFlorian Westphal2022-01-091-2/+6
| * netfilter: conntrack: Use max() instead of doing it manuallyJiapeng Chong2022-01-091-1/+1
| * netfilter: conntrack: tag conntracks picked up in local out hookFlorian Westphal2021-12-231-0/+1
| * netfilter: nf_tables: make counter support built-inPablo Neira Ayuso2021-12-231-0/+6
* | net/sched: act_ct: Fill offloading tuple iifidxPaul Blakey2022-01-042-0/+54
|/
* netfilter: conntrack: annotate data-races around ct->timeoutEric Dumazet2021-12-081-3/+3