summaryrefslogtreecommitdiff
path: root/net/netfilter
AgeCommit message (Expand)Author
11 daysnetfilter: nft_payload: fix mask build for partial field offloadXiang Mei (Microsoft)
11 daysipvs: clear the nfct flag under lockJulian Anastasov
11 daysipvs: do not mangle ICMP replies for non-first fragmentsJulian Anastasov
11 daysipvs: fix places with wrong packet offsetsJulian Anastasov
11 daysipvs: fix the checksum validationsJulian Anastasov
11 daysnetfilter: xt_hashlimit: validate hashtable supports XT_HASHLIMIT_RATE_MATCHPablo Neira Ayuso
11 daysnetfilter: nf_tables: make nft_object rhltable per tablePablo Neira Ayuso
11 daysipvs: adjust double hashing when fwd method changesJulian Anastasov
11 daysipvs: do not propagate one-packet flag to synced connsZhiling Zou
11 daysnetfilter: ipset: do not update comments from kernel-side hash addsDavid Lee
12 daysnetfilter: nf_conntrack_expect: add and use nf_ct_expect_related_pair()Pablo Neira Ayuso
12 daysnetfilter: nf_conntrack_sip: widen NAT rewrite delta to s32 in sip_help_tcp()Xiang Mei
2026-07-10netfilter: xt_physdev: masks are not c-stringsFlorian Westphal
2026-07-10ipvs: fix more places with wrong ipv6 transport offsetsJulian Anastasov
2026-07-10ipvs: reload ip header after head reallocationFlorian Westphal
2026-07-10netfilter: flowtable: use correct direction to set up tunnel routePablo Neira Ayuso
2026-07-10netfilter: nf_conncount: fix zone comparison in tuple dedupYizhou Zhao
2026-07-10netfilter: ecache: fix inverted time_after() checkYizhou Zhao
2026-07-10netfilter: xt_nat: reject unsupported target familiesWyatt Feng
2026-07-08ipvs: ensure inner headers in ICMP errors are in headroomJulian Anastasov
2026-07-08ipvs: use parsed transport offset in SCTP state lookupYizhou Zhao
2026-07-08ipvs: use parsed transport offset in TCP state lookupYizhou Zhao
2026-07-08ipvs: pass parsed transport offset to state handlersYizhou Zhao
2026-07-08netfilter: handle unreadable fragsFlorian Westphal
2026-07-08netfilter: flowtable: support IPIP tunnel with direct xmitPablo Neira Ayuso
2026-07-08netfilter: flowtable: IPIP tunnel hardware offload is not yet supportPablo Neira Ayuso
2026-07-08netfilter: flowtable: use dst in this direction when pushing IPIP headerPablo Neira Ayuso
2026-07-08netfilter: ipset: allocate the proper memory for the generic hash structureJozsef Kadlecsik
2026-07-08netfilter: ipset: cleanup the add/del backlog when resize failedJozsef Kadlecsik
2026-07-08netfilter: ipset: exclude gc when resize is in progressJozsef Kadlecsik
2026-07-08netfilter: ipset: mark the rcu locked areas properlyJozsef Kadlecsik
2026-07-08netfilter: nft_lookup: fix catchall element handling with inverted lookupsTamaki Yanagawa
2026-07-03netfilter: xt_connmark: reject invalid shift parametersWyatt Feng
2026-07-03ipvs: reset full ip_vs_seq structs in ip_vs_conn_newYizhou Zhao
2026-07-03ipvs: fix PMTU for GUE/GRE tunnel ICMP errorsYizhou Zhao
2026-07-03netfilter: nft_set_rbtree: get command skips end element with open intervalPablo Neira Ayuso
2026-07-03netfilter: nfnetlink_cthelper: cap to maximum number of expectation per maste...Pablo Neira Ayuso
2026-07-03netfilter: xt_rateest: fix u64 truncation in xt_rateest_mt()Feng Wu
2026-07-03netfilter: xt_u32: reject invalid shift countsWyatt Feng
2026-07-03netfilter: nf_nat_sip: reload possible stale data pointerFlorian Westphal
2026-07-02Merge tag 'net-7.2-rc2' of git://git.kernel.org/pub/scm/linux/kernel/git/netd...Linus Torvalds
2026-06-30netfilter: nftables: restrict checkum update offsetFlorian Westphal
2026-06-30netfilter: nftables: restrict linklayer and network header writesFlorian Westphal
2026-06-30netfilter: nfnetlink_queue: restrict writes to network headerFlorian Westphal
2026-06-30netfilter: nft_fib: reject fib expression on the netdev egress hookTheodor Arsenij Larionov-Trichkine
2026-06-30netfilter: nfnetlink_cthelper: cap to maximum number of expectation per masterPablo Neira Ayuso
2026-06-30netfilter: nf_conntrack_sip: validate skb_dst() before accessing itPablo Neira Ayuso
2026-06-30netfilter: ipset: fix race between dump and ip_set_list resizeXiang Mei
2026-06-30netfilter: nft_set_pipapo: don't leak bad clone into future transactionFlorian Westphal
2026-06-30netfilter: nf_conntrack_expect: zero at allocation timeFlorian Westphal