aboutsummaryrefslogtreecommitdiffstatshomepage
path: root/net/netfilter
AgeCommit message (Expand)AuthorFilesLines
7 daysnetfilter: flowtable: use skb_pull_rcsum() to pop vlan/pppoe headerPablo Neira Ayuso1-2/+2
8 daysnetfilter: flowtable: fix inline pppoe encapsulation in xmit pathPablo Neira Ayuso3-4/+46
8 daysnetfilter: flowtable: fix inline vlan encapsulation in xmit pathPablo Neira Ayuso1-37/+73
8 daysnetfilter: flowtable: ensure sufficient headroom in xmit pathPablo Neira Ayuso1-2/+11
8 daysnetfilter: xtables: fix L4 header parsing for non-first fragmentsFernando Fernandez Mancera5-3/+23
8 daysnetfilter: nf_tables: skip L4 header parsing for non-first fragmentsFernando Fernandez Mancera4-7/+7
9 daysnetfilter: nf_tables: fix netdev hook allocation memleak with dormant tablesFlorian Westphal1-14/+20
9 daysnetfilter: xt_CT: fix usersize for v1 and v2 revisionFlorian Westphal1-4/+4
9 daysnetfilter: nft_compat: run xt_check_hooks_{match,target}() from .validatePablo Neira Ayuso2-10/+36
9 daysnetfilter: x_tables: add .check_hooks to matches and targetsPablo Neira Ayuso7-59/+179
9 daysnetfilter: nft_fwd_netdev: use recursion counter in neigh egress pathWeiming Shi2-16/+8
9 daysnetfilter: nft_fwd_netdev: add device and headroom validate with neigh forwardingPablo Neira Ayuso1-2/+14
9 daysnetfilter: replace skb_try_make_writable() by skb_ensure_writable()Pablo Neira Ayuso2-4/+5
10 daysnetfilter: skip recording stale or retransmitted INITXin Long1-3/+7
2026-04-24netfilter: nf_conntrack_sip: don't use simple_strtoulFlorian Westphal2-34/+119
2026-04-24netfilter: reject zero shift in nft_bitwiseKai Ma1-1/+2
2026-04-24netfilter: xt_policy: fix strict mode inbound policy matchingJiexun Wang1-1/+1
2026-04-21netfilter: nf_tables: add hook transactions for device deletionsPablo Neira Ayuso1-60/+204
2026-04-21netfilter: nf_tables: join hook list via splice_list_rcu() in commit phasePablo Neira Ayuso1-4/+4
2026-04-21netfilter: nf_tables: use list_del_rcu for netlink hooksFlorian Westphal1-26/+18
2026-04-20netfilter: nfnetlink_osf: fix potential NULL dereference in ttl checkFernando Fernandez Mancera1-15/+7
2026-04-20netfilter: nfnetlink_osf: fix out-of-bounds read on option matchingFernando Fernandez Mancera1-11/+8
2026-04-20ipvs: fix MTU check for GSO packets in tunnel modeYingnan Zhang1-4/+15
2026-04-20netfilter: nat: use kfree_rcu to release opsPablo Neira Ayuso1-4/+6
2026-04-20netfilter: xtables: restrict several matches to inet familyPablo Neira Ayuso4-34/+68
2026-04-20netfilter: conntrack: remove sprintf usageFlorian Westphal2-16/+19
2026-04-20netfilter: nfnetlink_osf: fix divide-by-zero in OSF_WSS_MODULOXiang Mei1-0/+4
2026-04-20netfilter: nft_osf: restrict it to ipv4Pablo Neira Ayuso1-1/+5
2026-04-10netfilter: require Ethernet MAC header before using eth_hdr()Zhengchuan Liang5-12/+19
2026-04-10netfilter: nft_fwd_netdev: check ttl/hl before forwardingFlorian Westphal1-0/+10
2026-04-10netfilter: x_tables: Avoid a couple -Wflex-array-member-not-at-end warningsGustavo A. R. Silva1-4/+8
2026-04-10netfilter: conntrack: remove UDP-Lite conntrack supportFernando Fernandez Mancera9-160/+0
2026-04-10netfilter: xt_socket: enable defrag after all other checksFlorian Westphal1-17/+6
2026-04-10netfilter: xt_HL: add pr_fmt and checkentry validationMarino Dzalto1-0/+27
2026-04-10netfilter: nfnetlink: prefer skb_mac_header helpersFlorian Westphal2-22/+22
2026-04-10netfilter: x_physdev: reject empty or not-nul terminated device namesFlorian Westphal1-0/+22
2026-04-10ipvs: add conn_lfactor and svc_lfactor sysctl varsJulian Anastasov1-0/+76
2026-04-10ipvs: add ip_vs_status infoJulian Anastasov1-0/+145
2026-04-10ipvs: show the current conn_tab size to usersJulian Anastasov1-4/+22
2026-04-09Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski5-100/+84
2026-04-08netfilter: nfnetlink_queue: make hash table per queueFlorian Westphal1-90/+49
2026-04-08netfilter: nft_ct: fix use-after-free in timeout object destroyTuan Do1-1/+1
2026-04-08netfilter: xt_multiport: validate range encoding in checkentryRen Wei1-4/+30
2026-04-08netfilter: nfnetlink_log: initialize nfgenmsg in NLMSG_DONE terminatorXiang Mei1-4/+4
2026-04-08ipvs: fix NULL deref in ip_vs_add_service error pathWeiming Shi1-1/+0
2026-04-08netfilter: nf_tables_offload: add nft_flow_action_entry_next() and use itPablo Neira Ayuso2-2/+7
2026-04-08netfilter: nf_conntrack_h323: Correct indentation when H323_TRACE definedDavid Laight1-19/+19
2026-04-08netfilter: nft_meta: add double-tagged vlan and pppoe supportPablo Neira Ayuso3-3/+55
2026-04-08netfilter: nft_set_pipapo_avx2: remove redundant loop in lookup_slowFlorian Westphal1-23/+9
2026-04-08netfilter: nft_set_pipapo: increment data in one stepFlorian Westphal2-6/+1