summaryrefslogtreecommitdiffstats
path: root/net/netfilter/nf_tables_api.c
Commit message (Expand)AuthorAgeFilesLines
* netfilter: nf_tables: allow clone callbacks to sleepFlorian Westphal11 days1-4/+4
* netfilter: nf_tables: skip transaction if update object is not implementedPablo Neira Ayuso2024-05-061-2/+6
* netfilter: nf_tables: fix memleak in map from abort pathPablo Neira Ayuso2024-04-181-2/+14
* netfilter: nf_tables: restore set elements when delete set failsPablo Neira Ayuso2024-04-171-4/+40
* netfilter: nft_set_pipapo: walk over current view on netlink dumpPablo Neira Ayuso2024-04-111-0/+6
* netfilter: nf_tables: Fix potential data-race in __nft_obj_type_get()Ziyang Xuan2024-04-111-2/+6
* netfilter: nf_tables: Fix potential data-race in __nft_expr_type_get()Ziyang Xuan2024-04-111-2/+6
* netfilter: nf_tables: discard table flag update with pending basechain deletionPablo Neira Ayuso2024-04-041-4/+5
* netfilter: nf_tables: Fix potential data-race in __nft_flowtable_type_get()Ziyang Xuan2024-04-041-2/+7
* netfilter: nf_tables: reject new basechain after table flag updatePablo Neira Ayuso2024-04-041-0/+3
* netfilter: nf_tables: flush pending destroy work before exit_net releasePablo Neira Ayuso2024-04-041-0/+1
* netfilter: nf_tables: release mutex after nft_gc_seq_end from abort pathPablo Neira Ayuso2024-04-041-5/+8
* netfilter: nf_tables: release batch on table validation from abort pathPablo Neira Ayuso2024-04-041-5/+10
* netfilter: nf_tables: skip netdev hook unregistration if table is dormantPablo Neira Ayuso2024-03-281-6/+10
* netfilter: nf_tables: reject table flag and netdev basechain updatesPablo Neira Ayuso2024-03-281-1/+30
* netfilter: nf_tables: reject destroy command to remove basechain hooksPablo Neira Ayuso2024-03-281-1/+2
* netfilter: nf_tables: Fix a memory leak in nf_tables_updchainQuan Tian2024-03-211-13/+14
* netfilter: nf_tables: do not compare internal table flags on updatesPablo Neira Ayuso2024-03-211-1/+1
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2024-03-071-0/+7
|\
| * netfilter: nf_tables: mark set as dead when unbinding anonymous set with timeoutPablo Neira Ayuso2024-03-071-0/+1
| * netfilter: nf_tables: reject constant set with timeoutPablo Neira Ayuso2024-03-071-0/+3
| * netfilter: nf_tables: disallow anonymous set with timeout flagPablo Neira Ayuso2024-03-071-0/+3
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2024-02-221-39/+42
|\|
| * netfilter: nf_tables: use kzalloc for hook allocationFlorian Westphal2024-02-221-1/+1
| * netfilter: nf_tables: register hooks last when adding new chain/flowtablePablo Neira Ayuso2024-02-221-38/+40
| * netfilter: nf_tables: set dormant flag on hook register failureFlorian Westphal2024-02-221-0/+1
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2024-02-081-1/+3
|\|
| * netfilter: nf_tables: use timestamp to check for set element timeoutPablo Neira Ayuso2024-02-081-1/+3
* | Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2024-02-011-5/+9
|\|
| * netfilter: nf_tables: restrict tunnel object to NFPROTO_NETDEVPablo Neira Ayuso2024-01-311-5/+9
* | netfilter: nf_tables: pass flags to set backend selection routinePablo Neira Ayuso2024-01-291-7/+2
* | netfilter: nf_tables: Implement table adoption supportPhil Sutter2024-01-291-3/+16
* | netfilter: nf_tables: Introduce NFT_TABLE_F_PERSISTPhil Sutter2024-01-291-0/+7
|/
* netfilter: nf_tables: reject QUEUE/DROP verdict parametersFlorian Westphal2024-01-241-10/+6
* netfilter: nf_tables: restrict anonymous set and map names to 16 bytesFlorian Westphal2024-01-241-0/+4
* netfilter: nf_tables: reject NFT_SET_CONCAT with not field length descriptionPablo Neira Ayuso2024-01-171-1/+5
* netfilter: nf_tables: skip dead set elements in netlink dumpPablo Neira Ayuso2024-01-171-1/+1
* netfilter: nf_tables: do not allow mismatch field size and set key lengthPablo Neira Ayuso2024-01-171-1/+5
* netfilter: nf_tables: check if catch-all set element is active in next genera...Pablo Neira Ayuso2024-01-171-1/+1
* netfilter: nf_tables: bail out if stateful expression provides no .clonePablo Neira Ayuso2024-01-171-8/+7
* netfilter: nf_tables: validate .maxattr at expression registrationPablo Neira Ayuso2024-01-171-0/+3
* netfilter: nf_tables: reject invalid set policyPablo Neira Ayuso2024-01-171-1/+9
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski2024-01-041-1/+1
|\
| * netfilter: nf_tables: skip set commit for deleted/destroyed setsPablo Neira Ayuso2023-12-201-1/+1
* | netfilter: nf_tables: validate chain type update if availablePablo Neira Ayuso2023-12-221-1/+10
* | netfilter: nf_tables: mark newset as dead on transaction abortFlorian Westphal2023-12-221-0/+1
* | netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requestsPhil Sutter2023-12-221-17/+81
* | netfilter: nf_tables: Introduce nft_set_dump_ctx_init()Phil Sutter2023-12-221-16/+33
* | netfilter: nf_tables: Pass const set to nft_get_set_elemPhil Sutter2023-12-221-3/+3
|/
* netfilter: nf_tables: validate family when identifying table via handlePablo Neira Ayuso2023-12-061-2/+3