summaryrefslogtreecommitdiffstats
path: root/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* ipvs: fix dependency on nf_defrag_ipv6Andrea Claudi2019-03-233-6/+15
* netfilter: compat: initialize all fields in xt_initFrancesco Ruggeri2019-03-231-1/+1
* netfilter: xt_TEE: add missing code to get interface index in checkentry.Taehee Yoo2019-03-131-0/+7
* netfilter: xt_TEE: fix wrong interface selectionTaehee Yoo2019-03-131-17/+52
* netfilter: nf_nat: skip nat clash resolution for same-origin entriesMartynas Pumputis2019-03-131-0/+16
* ipvs: Fix signed integer overflow when setsockopt timeoutZhangXiaoxu2019-03-131-0/+12
* netfilter: nfnetlink_osf: add missing fmatch checkFernando Fernandez Mancera2019-02-271-0/+4
* netfilter: nft_compat: use-after-free when deleting targetsPablo Neira Ayuso2019-02-271-1/+2
* netfilter: nf_tables: fix flush after rule deletion in the same batchPablo Neira Ayuso2019-02-271-0/+3
* netfilter: nft_flow_offload: fix checking method of conntrack helperHenry Yen2019-02-271-1/+4
* netfilter: nft_flow_offload: fix interaction with vrf slave devicewenxu2019-02-272-4/+5
* netfilter: nft_flow_offload: Fix reverse route lookupwenxu2019-02-271-2/+2
* netfilter: nf_tables: fix leaking object reference countTaehee Yoo2019-02-271-0/+2
* netfilter: ipset: Allow matching on destination MAC address for mac and ipmac...Stefano Brivio2019-01-263-16/+20
* netfilter: nf_conncount: fix argument order to find_next_bitFlorian Westphal2019-01-221-1/+1
* netfilter: nf_conncount: speculative garbage collection on empty listsPablo Neira Ayuso2019-01-221-32/+15Star
* netfilter: nf_conncount: move all list iterations under spinlockPablo Neira Ayuso2019-01-221-26/+20Star
* netfilter: nf_conncount: merge lookup and add functionsFlorian Westphal2019-01-222-91/+69Star
* netfilter: nf_conncount: restart search when nodes have been erasedFlorian Westphal2019-01-221-11/+7Star
* netfilter: nf_conncount: split gc in two phasesFlorian Westphal2019-01-221-3/+19
* netfilter: nf_conncount: don't skip eviction when age is negativeFlorian Westphal2019-01-221-1/+1
* netfilter: nf_conncount: replace CONNCOUNT_LOCK_SLOTS with CONNCOUNT_SLOTSShawn Bohrer2019-01-221-14/+5Star
* netfilter: nf_conncount: use rb_link_node_rcu() instead of rb_link_node()Taehee Yoo2019-01-131-1/+1
* netfilter: nat: can't use dst_hold on noref dstFlorian Westphal2019-01-131-1/+2
* netfilter: ipset: do not call ipset_nest_end after nla_nest_cancelPan Bian2019-01-131-1/+1
* netfilter: seqadj: re-load tcp header pointer after possible head reallocationFlorian Westphal2019-01-131-3/+4
* netfilter: nf_tables: fix suspicious RCU usage in nft_chain_stats_replace()Taehee Yoo2019-01-132-9/+14
* netfilter: nf_tables: deactivate expressions in rule replecement routineTaehee Yoo2018-12-171-11/+4Star
* netfilter: nf_conncount: remove wrong condition check routineTaehee Yoo2018-12-171-5/+2Star
* netfilter: add missing error handling code for register functionsTaehee Yoo2018-12-171-1/+4
* ipvs: call ip_vs_dst_notifier earlier than ipv6_dev_notfXin Long2018-12-171-0/+3
* netfilter: xt_hashlimit: fix a possible memory leak in htable_create()Taehee Yoo2018-12-171-6/+3Star
* netfilter: nf_tables: fix use-after-free when deleting compat expressionsFlorian Westphal2018-12-172-3/+5
* netfilter: xt_RATEEST: remove netns exit routineTaehee Yoo2018-12-171-10/+0Star
* netfilter: nf_tables: don't skip inactive chains during updateFlorian Westphal2018-12-171-6/+3Star
* netfilter: nf_conncount: fix unexpected permanent node of list.Taehee Yoo2018-12-171-3/+15
* netfilter: nf_conncount: fix list_del corruption in conn_freeTaehee Yoo2018-12-171-2/+5
* netfilter: nf_conncount: use spin_lock_bh instead of spin_lockTaehee Yoo2018-12-171-6/+6
* netfilter: nft_compat: ebtables 'nat' table is normal chain typeFlorian Westphal2018-11-271-9/+12
* netfilter: ipset: Fix calling ip_set() macro at dumpingJozsef Kadlecsik2018-11-271-4/+8
* netfilter: xt_IDLETIMER: add sysfs filename checking routineTaehee Yoo2018-11-271-0/+20
* netfilter: ipset: fix ip_set_list allocation failureAndrey Ryabinin2018-11-271-4/+4
* netfilter: ipset: actually allow allowable CIDR 0 in hash:net,port,netEric Westbrook2018-11-271-4/+4
* netfilter: ipset: list:set: Decrease refcount synchronously on deletion and r...Stefano Brivio2018-11-272-18/+22
* Revert "netfilter: nft_numgen: add map lookups for numgen random operations"Pablo Neira Ayuso2018-11-271-127/+0Star
* netfilter: conntrack: fix calculation of next bucket number in early_dropVasily Khoruzhick2018-11-211-5/+8
* netfilter: xt_nat: fix DNAT target for shifted portmap rangesPaolo Abeni2018-11-131-0/+2
* netfilter: xt_socket: check sk before checking for netns.Flavio Leitner2018-09-281-2/+2
* netfilter: nft_set_rbtree: add missing rb_erase() in GC routineTaehee Yoo2018-09-281-14/+14
* netfilter: conntrack: get rid of double sizeofzhong jiang2018-09-201-2/+2