summaryrefslogtreecommitdiffstats
path: root/net/netfilter
Commit message (Expand)AuthorAgeFilesLines
* netfilter: ipset: Allow matching on destination MAC address for mac and ipmac...Stefano Brivio2019-01-263-16/+20
* netfilter: nf_conncount: fix argument order to find_next_bitFlorian Westphal2019-01-221-1/+1
* netfilter: nf_conncount: speculative garbage collection on empty listsPablo Neira Ayuso2019-01-221-32/+15Star
* netfilter: nf_conncount: move all list iterations under spinlockPablo Neira Ayuso2019-01-221-26/+20Star
* netfilter: nf_conncount: merge lookup and add functionsFlorian Westphal2019-01-222-91/+69Star
* netfilter: nf_conncount: restart search when nodes have been erasedFlorian Westphal2019-01-221-11/+7Star
* netfilter: nf_conncount: split gc in two phasesFlorian Westphal2019-01-221-3/+19
* netfilter: nf_conncount: don't skip eviction when age is negativeFlorian Westphal2019-01-221-1/+1
* netfilter: nf_conncount: replace CONNCOUNT_LOCK_SLOTS with CONNCOUNT_SLOTSShawn Bohrer2019-01-221-14/+5Star
* netfilter: nf_conncount: use rb_link_node_rcu() instead of rb_link_node()Taehee Yoo2019-01-131-1/+1
* netfilter: nat: can't use dst_hold on noref dstFlorian Westphal2019-01-131-1/+2
* netfilter: ipset: do not call ipset_nest_end after nla_nest_cancelPan Bian2019-01-131-1/+1
* netfilter: seqadj: re-load tcp header pointer after possible head reallocationFlorian Westphal2019-01-131-3/+4
* netfilter: nf_tables: fix suspicious RCU usage in nft_chain_stats_replace()Taehee Yoo2019-01-132-9/+14
* netfilter: nf_tables: deactivate expressions in rule replecement routineTaehee Yoo2018-12-171-11/+4Star
* netfilter: nf_conncount: remove wrong condition check routineTaehee Yoo2018-12-171-5/+2Star
* netfilter: add missing error handling code for register functionsTaehee Yoo2018-12-171-1/+4
* ipvs: call ip_vs_dst_notifier earlier than ipv6_dev_notfXin Long2018-12-171-0/+3
* netfilter: xt_hashlimit: fix a possible memory leak in htable_create()Taehee Yoo2018-12-171-6/+3Star
* netfilter: nf_tables: fix use-after-free when deleting compat expressionsFlorian Westphal2018-12-172-3/+5
* netfilter: xt_RATEEST: remove netns exit routineTaehee Yoo2018-12-171-10/+0Star
* netfilter: nf_tables: don't skip inactive chains during updateFlorian Westphal2018-12-171-6/+3Star
* netfilter: nf_conncount: fix unexpected permanent node of list.Taehee Yoo2018-12-171-3/+15
* netfilter: nf_conncount: fix list_del corruption in conn_freeTaehee Yoo2018-12-171-2/+5
* netfilter: nf_conncount: use spin_lock_bh instead of spin_lockTaehee Yoo2018-12-171-6/+6
* netfilter: nft_compat: ebtables 'nat' table is normal chain typeFlorian Westphal2018-11-271-9/+12
* netfilter: ipset: Fix calling ip_set() macro at dumpingJozsef Kadlecsik2018-11-271-4/+8
* netfilter: xt_IDLETIMER: add sysfs filename checking routineTaehee Yoo2018-11-271-0/+20
* netfilter: ipset: fix ip_set_list allocation failureAndrey Ryabinin2018-11-271-4/+4
* netfilter: ipset: actually allow allowable CIDR 0 in hash:net,port,netEric Westbrook2018-11-271-4/+4
* netfilter: ipset: list:set: Decrease refcount synchronously on deletion and r...Stefano Brivio2018-11-272-18/+22
* Revert "netfilter: nft_numgen: add map lookups for numgen random operations"Pablo Neira Ayuso2018-11-271-127/+0Star
* netfilter: conntrack: fix calculation of next bucket number in early_dropVasily Khoruzhick2018-11-211-5/+8
* netfilter: xt_nat: fix DNAT target for shifted portmap rangesPaolo Abeni2018-11-131-0/+2
* netfilter: xt_socket: check sk before checking for netns.Flavio Leitner2018-09-281-2/+2
* netfilter: nft_set_rbtree: add missing rb_erase() in GC routineTaehee Yoo2018-09-281-14/+14
* netfilter: conntrack: get rid of double sizeofzhong jiang2018-09-201-2/+2
* netfilter: nft_osf: use enum nft_data_types for nft_validate_register_storeStefan Agner2018-09-201-1/+1
* Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nfDavid S. Miller2018-09-1217-96/+175
|\
| * netfilter: xt_hashlimit: use s->file instead of s->privateCong Wang2018-09-111-9/+9
| * netfilter: nfnetlink_queue: Solve the NFQUEUE/conntrack clash for NF_REPEATMichal 'vorner' Vaner2018-09-111-0/+1
| * netfilter: cttimeout: ctnl_timeout_find_get() returns incorrect pointer to typePablo Neira Ayuso2018-09-111-3/+3
| * netfilter: conntrack: timeout interface depend on CONFIG_NF_CONNTRACK_TIMEOUTPablo Neira Ayuso2018-09-118-45/+45
| * netfilter: conntrack: reset tcp maxwin on re-registerFlorian Westphal2018-09-111-0/+26
| * netfilter: nf_tables: release chain in flushing setTaehee Yoo2018-08-311-0/+1
| * netfilter: nf_tables: rework ct timeout set supportFlorian Westphal2018-08-291-30/+29Star
| * netfilter: conntrack: place 'new' timeout in first location tooFlorian Westphal2018-08-293-0/+21
| * netfilter: xt_checksum: ignore gso skbsFlorian Westphal2018-08-242-7/+27
| * netfilter: xt_cluster: add dependency on conntrack moduleMartin Willi2018-08-231-1/+13
| * netfilter: conntrack: remove duplicated include from nf_conntrack_proto_udp.cYue Haibing2018-08-231-1/+0Star