aboutsummaryrefslogtreecommitdiffstats
path: root/net (follow)
AgeCommit message (Expand)AuthorFilesLines
2018-01-08netfilter: ipset: Fix "don't update counters" mode when counters used at the matchingJozsef Kadlecsik5-122/+89
2018-01-08netfilter: ipset: use swap macro instead of _manually_ swapping valuesGustavo A. R. Silva3-18/+6
2018-01-08netfilter: nf_tables: flow offload expressionPablo Neira Ayuso3-0/+272
2018-01-08netfilter: flow table support for the mixed IPv4/IPv6 familyPablo Neira Ayuso5-2/+61
2018-01-08netfilter: flow table support for IPv6Pablo Neira Ayuso4-1/+290
2018-01-08netfilter: flow table support for IPv4Pablo Neira Ayuso3-0/+294
2018-01-08netfilter: add generic flow table infrastructurePablo Neira Ayuso3-0/+439
2018-01-08netfilter: nf_tables: add flow table netlink frontendPablo Neira Ayuso1-1/+746
2018-01-08netfilter: nf_conntrack: add IPS_OFFLOAD status bitPablo Neira Ayuso4-5/+45
2018-01-08netfilter: nf_tables: remove nft_dereference()Pablo Neira Ayuso1-3/+3
2018-01-08netfilter: remove defensive check on malformed packets from raw socketsPablo Neira Ayuso13-128/+3
2018-01-08netfilter: meta: secpath supportFlorian Westphal1-0/+43
2018-01-08netfilter: remove struct nf_afinfo and its helper functionsPablo Neira Ayuso4-52/+6
2018-01-08netfilter: remove route_key_size field in struct nf_afinfoPablo Neira Ayuso3-8/+16
2018-01-08netfilter: move reroute indirection to struct nf_ipv6_opsPablo Neira Ayuso5-17/+27
2018-01-08netfilter: move route indirection to struct nf_ipv6_opsPablo Neira Ayuso9-56/+57
2018-01-08netfilter: remove saveroute indirection in struct nf_afinfoPablo Neira Ayuso4-61/+41
2018-01-08netfilter: move checksum_partial indirection to struct nf_ipv6_opsPablo Neira Ayuso4-17/+33
2018-01-08netfilter: move checksum indirection to struct nf_ipv6_opsPablo Neira Ayuso5-11/+29
2018-01-08netfilter: connlimit: split xt_connlimit into front and backendFlorian Westphal4-345/+402
2018-01-08netfilter: nf_tables: remove hooks from family definitionPablo Neira Ayuso7-40/+36
2018-01-08netfilter: nf_tables: remove multihook chains and familiesPablo Neira Ayuso8-70/+48
2018-01-08netfilter: nf_tables_inet: don't use multihook infrastructure anymorePablo Neira Ayuso3-16/+60
2018-01-08netfilter: core: support for NFPROTO_INET hook registrationPablo Neira Ayuso1-9/+44
2018-01-08netfilter: core: pass family as parameter to nf_remove_net_hook()Pablo Neira Ayuso1-5/+5
2018-01-08netfilter: core: pass hook number, family and device to nf_find_hook_list()Pablo Neira Ayuso1-17/+19
2018-01-08netfilter: core: add nf_remove_net_hookPablo Neira Ayuso1-4/+4
2018-01-08netfilter: nf_tables: add nft_set_is_anonymous() helperPablo Neira Ayuso2-5/+5
2018-01-08netfilter: nf_tables: explicit nft_set_pktinfo() call from hook pathPablo Neira Ayuso9-13/+24
2018-01-08netfilter: nf_tables_arp: don't set forward chainPablo Neira Ayuso1-1/+0
2018-01-08netfilter: nf_tables: reject nat hook registration if prio is before conntrackFlorian Westphal1-1/+6
2018-01-08netfilter: core: only allow one nat hook per hook pointFlorian Westphal4-0/+16
2018-01-08netfilter: xtables: add and use xt_request_find_table_lockFlorian Westphal4-51/+63
2018-01-08netfilter: don't allocate space for arp/bridge hooks unless neededFlorian Westphal6-0/+21
2018-01-08netfilter: don't allocate space for decnet hooks unless neededFlorian Westphal1-0/+4
2018-01-08netfilter: reduce hook array sizes to what is neededFlorian Westphal1-7/+17
2018-01-08netfilter: reduce size of hook entry point locationsFlorian Westphal3-11/+50
2018-01-08netfilter: core: free hooks with call_rcuFlorian Westphal1-6/+28
2018-01-08netfilter: core: remove synchronize_net call if nfqueue is usedFlorian Westphal4-18/+6
2018-01-08netfilter: core: make nf_unregister_net_hooks simple wrapper againFlorian Westphal1-56/+3
2018-01-08netfilter: nf_conntrack_h323: Remove unwanted comments.Varsha Rao2-71/+13
2018-01-08netfilter: ipset: add resched points during set listingFlorian Westphal3-2/+2
2018-01-08netfilter: ipset: use nfnl_mutex_is_lockedFlorian Westphal1-1/+1
2018-01-08netfilter: ipvs: Remove useless ipvsh param of frag_safe_skb_hpGao Feng2-7/+7
2018-01-08netfilter: conntrack: timeouts can be constFlorian Westphal7-7/+7
2018-01-08netfilter: mark expected switch fall-throughsGustavo A. R. Silva6-2/+9
2018-01-08netfilter: conntrack: l4 protocol trackers can be constFlorian Westphal8-14/+14
2018-01-08netfilter: conntrack: constify list of builtin trackersFlorian Westphal3-8/+8
2018-01-08netfilter: conntrack: remove nlattr_size pointer from l4proto trackersFlorian Westphal5-31/+25
2018-01-07ipv6: Flush multipath routes when all siblings are deadIdo Schimmel1-8/+75