summaryrefslogtreecommitdiffstats
path: root/net/netfilter
AgeCommit message (Expand)AuthorLines
2024-01-17ipvs: avoid stat macros calls from preemptible contextFedor Pchelkin-2/+2
2024-01-17netfilter: nf_tables: reject NFT_SET_CONCAT with not field length descriptionPablo Neira Ayuso-1/+5
2024-01-17netfilter: nf_tables: skip dead set elements in netlink dumpPablo Neira Ayuso-1/+1
2024-01-17netfilter: nf_tables: do not allow mismatch field size and set key lengthPablo Neira Ayuso-1/+5
2024-01-17netfilter: nf_tables: check if catch-all set element is active in next genera...Pablo Neira Ayuso-1/+1
2024-01-17netfilter: propagate net to nf_bridge_get_physindevPavel Tikhomirov-12/+13
2024-01-17netfilter: nf_queue: remove excess nf_bridge variablePavel Tikhomirov-3/+1
2024-01-17netfilter: nfnetlink_log: use proper helper for fetching physinifPavel Tikhomirov-4/+4
2024-01-17netfilter: nft_limit: do not ignore unsupported flagsPablo Neira Ayuso-7/+12
2024-01-17netfilter: nf_tables: bail out if stateful expression provides no .clonePablo Neira Ayuso-8/+7
2024-01-17netfilter: nf_tables: validate .maxattr at expression registrationPablo Neira Ayuso-0/+3
2024-01-17netfilter: nf_tables: reject invalid set policyPablo Neira Ayuso-1/+9
2024-01-11Merge tag 'net-next-6.8' of git://git.kernel.org/pub/scm/linux/kernel/git/net...Linus Torvalds-36/+131
2024-01-10Merge tag 'header_cleanup-2024-01-10' of https://evilpiepirate.org/git/bcachefsLinus Torvalds-0/+5
2024-01-04Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski-4/+5
2024-01-03netfilter: nft_immediate: drop chain reference counter on errorPablo Neira Ayuso-1/+1
2024-01-03netfilter: nf_nat: fix action not being set for all ct statesBrad Cowie-1/+2
2023-12-27Kill sched.h dependency on rcupdate.hKent Overstreet-0/+5
2023-12-22netfilter: nf_tables: validate chain type update if availablePablo Neira Ayuso-1/+10
2023-12-22netfilter: ctnetlink: support filtering by zoneFelix Huettner-4/+8
2023-12-22netfilter: nf_tables: mark newset as dead on transaction abortFlorian Westphal-0/+1
2023-12-22netfilter: nft_set_pipapo: prefer gfp_kernel allocationFlorian Westphal-1/+1
2023-12-22netfilter: nf_tables: Add locking for NFT_MSG_GETSETELEM_RESET requestsPhil Sutter-17/+81
2023-12-22netfilter: nf_tables: Introduce nft_set_dump_ctx_init()Phil Sutter-16/+33
2023-12-22netfilter: nf_tables: Pass const set to nft_get_set_elemPhil Sutter-3/+3
2023-12-20netfilter: nf_tables: skip set commit for deleted/destroyed setsPablo Neira Ayuso-1/+1
2023-12-20netfilter: nf_tables: set transport offset from mac header for netdev/egressPablo Neira Ayuso-1/+1
2023-12-19Revert BPF token-related functionalityAndrii Nakryiko-1/+1
2023-12-18Merge tag 'for-netdev' of https://git.kernel.org/pub/scm/linux/kernel/git/bpf...Jakub Kicinski-1/+1
2023-12-11ipv6: annotate data-races around np->mcast_oifEric Dumazet-1/+1
2023-12-07Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski-19/+40
2023-12-06bpf: take into account BPF token when fetching helper protosAndrii Nakryiko-1/+1
2023-12-06netfilter: xt_owner: Fix for unsafe access of sk->sk_socketPhil Sutter-4/+12
2023-12-06netfilter: nf_tables: validate family when identifying table via handlePablo Neira Ayuso-2/+3
2023-12-06netfilter: nf_tables: bail out on mismatching dynset and set expressionsPablo Neira Ayuso-4/+9
2023-12-06netfilter: nf_tables: fix 'exist' matching on bigendian archesFlorian Westphal-4/+8
2023-12-06netfilter: nft_set_pipapo: skip inactive elements during set walkFlorian Westphal-0/+3
2023-12-06netfilter: bpf: fix bad registration on nf_defragD. Wythe-5/+5
2023-11-29tcp: Don't pass cookie to __cookie_v[46]_check().Kuniyuki Iwashima-2/+2
2023-11-14netfilter: nf_tables: split async and sync catchall in two functionsPablo Neira Ayuso-25/+30
2023-11-14netfilter: ipset: fix race condition between swap/destroy and kernel side add...Jozsef Kadlecsik-7/+7
2023-11-14netfilter: nf_tables: bogus ENOENT when destroying element which does not existPablo Neira Ayuso-2/+3
2023-11-14netfilter: nf_tables: fix pointer math issue in nft_byteorder_eval()Dan Carpenter-3/+4
2023-11-14netfilter: nft_set_rbtree: Remove unused variable nft_netYang Li-2/+0
2023-11-08Merge tag 'nf-23-11-08' of git://git.kernel.org/pub/scm/linux/kernel/git/netf...Jakub Kicinski-7/+69
2023-11-08netfilter: nat: fix ipv6 nat redirect with mapped and scoped addressesFlorian Westphal-1/+26
2023-11-08netfilter: xt_recent: fix (increase) ipv6 literal buffer lengthMaciej Żenczykowski-1/+1
2023-11-08ipvs: add missing module descriptionsFlorian Westphal-0/+16
2023-11-08netfilter: nf_tables: remove catchall element in GC sync pathPablo Neira Ayuso-5/+17
2023-11-08netfilter: add missing module descriptionsFlorian Westphal-0/+9