summaryrefslogtreecommitdiff
path: root/net/netfilter
AgeCommit message (Expand)Author
33 hoursnetfilter: nft_exthdr: fix offset with ipv4_find_option()Alexey Kashavkin
2 daysipvs: prevent integer overflow in do_ip_vs_get_ctl()Dan Carpenter
2 daysnetfilter: nf_conncount: Fully initialize struct nf_conncount_tuple in insert...Kohei Enju
8 daysnetfilter: nf_tables: make destruction work queue pernetFlorian Westphal
9 daysnetfilter: nf_conncount: garbage collection is not skipped when jiffies wrap ...Nicklas Bo Jensen
11 daysnetfilter: nft_ct: Use __refcount_inc() for per-CPU nft_ct_pcpu_template.Sebastian Andrzej Siewior
2025-02-12Revert "netfilter: flowtable: teardown flow if cached mtu is stale"Pablo Neira Ayuso
2025-01-30Merge tag 'net-6.14-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/net...Linus Torvalds
2025-01-30Merge tag 'nf-25-01-30' of git://git.kernel.org/pub/scm/linux/kernel/git/netf...Jakub Kicinski
2025-01-30netfilter: nf_tables: reject mismatching sum of field_len with set key lengthPablo Neira Ayuso
2025-01-26Merge tag 'mm-nonmm-stable-2025-01-24-23-16' of git://git.kernel.org/pub/scm/...Linus Torvalds
2025-01-22Merge tag 'net-next-6.14' of git://git.kernel.org/pub/scm/linux/kernel/git/ne...Linus Torvalds
2025-01-21Merge tag 'lsm-pr-20250121' of git://git.kernel.org/pub/scm/linux/kernel/git/...Linus Torvalds
2025-01-19netfilter: flowtable: add CLOSING statePablo Neira Ayuso
2025-01-19netfilter: flowtable: teardown flow if cached mtu is stalePablo Neira Ayuso
2025-01-19netfilter: conntrack: rework offload nf_conn timeout extension logicFlorian Westphal
2025-01-19netfilter: conntrack: remove skb argument from nf_ct_refreshFlorian Westphal
2025-01-19netfilter: nft_flow_offload: update tcp state flags under lockFlorian Westphal
2025-01-19netfilter: nft_flow_offload: clear tcp MAXACK flag before moving to slowpathFlorian Westphal
2025-01-19netfilter: nf_tables: Simplify chain netdev notifierPhil Sutter
2025-01-19netfilter: nf_tables: Tolerate chains with no remaining hooksPhil Sutter
2025-01-19netfilter: nf_tables: Compare netdev hooks based on stored namePhil Sutter
2025-01-19netfilter: nf_tables: Use stored ifname in netdev hook dumpsPhil Sutter
2025-01-19netfilter: nf_tables: Store user-defined hook ifnamePhil Sutter
2025-01-19netfilter: nf_tables: Flowtable hook's pf value never variesPhil Sutter
2025-01-19netfilter: nf_tables: fix set size with rbtree backendPablo Neira Ayuso
2025-01-14Merge tag 'nf-next-25-01-11' of git://git.kernel.org/pub/scm/linux/kernel/git...Paolo Abeni
2025-01-12netfilter: conntrack: cleanup timeout definitionsEaswar Hariharan
2025-01-10Merge tag 'ipsec-next-2025-01-09' of git://git.kernel.org/pub/scm/linux/kerne...David S. Miller
2025-01-09netfilter: conntrack: add conntrack event timestampFlorian Westphal
2025-01-09netfilter: conntrack: clamp maximum hashtable size to INT_MAXPablo Neira Ayuso
2025-01-09netfilter: nf_tables: imbalance in flowtable bindingPablo Neira Ayuso
2025-01-05netfilter: xt_hashlimit: htable_selective_cleanup() optimizationEric Dumazet
2025-01-05ipvs: speed up reads from ip_vs_conn proc fileFlorian Westphal
2025-01-05netfilter: nf_tables: remove the genmask parametertuqiang
2025-01-04net: corrections for security_secid_to_secctx returnsCasey Schaufler
2024-12-19netfilter: ipset: Fix for recursive locking warningPhil Sutter
2024-12-18ipvs: Fix clamp() of ip_vs_conn_tab on small memory systemsDavid Laight
2024-12-11netfilter: nf_tables: do not defer rule destruction via call_rcuFlorian Westphal
2024-12-11netfilter: IDLETIMER: Fix for possible ABBA deadlockPhil Sutter
2024-12-05xfrm: add generic iptfs defines and functionalityChristian Hopps
2024-12-04netfilter: nft_set_hash: skip duplicated elements pending gc runPablo Neira Ayuso
2024-12-04lsm: replace context+len with lsm_contextCasey Schaufler
2024-12-04lsm: ensure the correct LSM context releaserCasey Schaufler
2024-12-04netfilter: ipset: Hold module reference while requesting a modulePhil Sutter
2024-12-03netfilter: nft_inner: incorrect percpu area handling under softirqPablo Neira Ayuso
2024-11-28netfilter: nft_socket: remove WARN_ON_ONCE on maximum cgroup levelPablo Neira Ayuso
2024-11-28netfilter: x_tables: fix LED ID check in led_tg_check()Dmitry Antipov
2024-11-28ipvs: fix UB due to uninitialized stack access in ip_vs_protocol_init()Jinghao Jia
2024-11-21Merge tag 'net-next-6.13' of git://git.kernel.org/pub/scm/linux/kernel/git/ne...Linus Torvalds