index
:
wireguard-linux
backport-5.4.y
davem/net
davem/net-next
devel
gregkh/stable-5.4.y
jd/bump-compilers
jd/deferred-aip-removal
jd/new-archs
jd/orphan-parallel
jd/rcu-barrier
jd/shorter-socket-lock
jd/unified-crypt-queue
jd/xdp-l3
stable
update-toolchain
WireGuard for the Linux kernel
Jason A. Donenfeld
about
summary
refs
log
tree
commit
diff
stats
homepage
log msg
author
committer
range
path:
root
/
net
/
netfilter
Age
Commit message (
Expand
)
Author
Files
Lines
2026-01-20
netfilter: xt_tcpmss: check remaining length before reading optlen
Florian Westphal
1
-1
/
+1
2026-01-20
netfilter: nf_conncount: fix tracking of connections from localhost
Fernando Fernandez Mancera
1
-2
/
+13
2026-01-20
netfilter: nft_compat: add more restrictions on netlink attributes
Florian Westphal
1
-3
/
+10
2026-01-20
netfilter: nfnetlink_queue: nfqnl_instance GFP_ATOMIC -> GFP_KERNEL_ACCOUNT allocation
Scott Mitchell
1
-41
/
+34
2026-01-20
netfilter: nf_conntrack: don't rely on implicit includes
Florian Westphal
9
-0
/
+13
2026-01-20
netfilter: don't include xt and nftables.h in unrelated subsystems
Florian Westphal
4
-0
/
+4
2026-01-20
netfilter: nf_conntrack: enable icmp clash support
Florian Westphal
2
-0
/
+2
2026-01-20
netfilter: nf_conncount: increase the connection clean up limit to 64
Fernando Fernandez Mancera
1
-5
/
+10
2026-01-20
netfilter: nf_conntrack: Add allow_clash to generic protocol handler
Yuto Hamaguchi
1
-0
/
+1
2026-01-20
netfilter: nf_tables: reset table validation state on abort
Florian Westphal
1
-0
/
+7
2026-01-14
Merge git://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf after rc5
Alexei Starovoitov
10
-52
/
+102
2026-01-02
bpf: net: netfilter: drop dead NULL checks
Puranjay Mohan
1
-10
/
+4
2026-01-02
bpf: Remove redundant KF_TRUSTED_ARGS flag from all kfuncs
Puranjay Mohan
3
-6
/
+6
2026-01-02
netfilter: nf_conncount: update last_gc only when GC has been performed
Fernando Fernandez Mancera
1
-1
/
+1
2026-01-02
netfilter: nf_tables: fix memory leak in nf_tables_newrule()
Zilin Guan
1
-1
/
+2
2026-01-01
netfilter: replace -EEXIST with -EBUSY
Daniel Gomez
2
-3
/
+3
2026-01-01
netfilter: nft_synproxy: avoid possible data-race on update operation
Fernando Fernandez Mancera
1
-3
/
+3
2026-01-01
netfilter: nft_set_pipapo: fix range overlap detection
Florian Westphal
1
-2
/
+2
2025-12-16
audit: add audit_log_nf_skb helper function
Ricardo Robaina
2
-114
/
+2
2025-12-15
netfilter: nf_tables: avoid softlockup warnings in nft_chain_validate
Florian Westphal
1
-2
/
+2
2025-12-15
netfilter: nf_tables: avoid chain re-validation if possible
Florian Westphal
1
-4
/
+65
2025-12-11
netfilter: nf_tables: remove redundant chain validation on register store
Pablo Neira Ayuso
1
-11
/
+0
2025-12-11
netfilter: nf_nat: remove bogus direction check
Florian Westphal
1
-13
/
+1
2025-12-10
netfilter: always set route tuple out ifindex
Lorenzo Bianconi
1
-1
/
+3
2025-12-10
ipvs: fix ipv4 null-ptr-deref in route error path
Slavin Liu
1
-0
/
+3
2025-12-10
netfilter: nf_conncount: fix leaked ct in error paths
Fernando Fernandez Mancera
1
-11
/
+14
2025-12-10
netfilter: conntrack: warn when cleanup is stuck
Jakub Kicinski
1
-0
/
+3
2025-11-28
Merge tag 'nf-next-25-11-28' of git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf-next
Jakub Kicinski
9
-400
/
+762
2025-11-28
net: Remove KMSG_COMPONENT macro
Heiko Carstens
30
-60
/
+30
2025-11-28
netfilter: nft_connlimit: add support to object update operation
Fernando Fernandez Mancera
1
-1
/
+12
2025-11-28
netfilter: nft_connlimit: update the count if add was skipped
Fernando Fernandez Mancera
2
-6
/
+19
2025-11-28
netfilter: nf_conncount: make nf_conncount_gc_list() to disable BH
Fernando Fernandez Mancera
2
-13
/
+18
2025-11-28
netfilter: nf_conncount: rework API to use sk_buff directly
Fernando Fernandez Mancera
3
-86
/
+126
2025-11-28
netfilter: flowtable: Add IPIP tx sw acceleration
Lorenzo Bianconi
2
-4
/
+106
2025-11-28
netfilter: flowtable: Add IPIP rx sw acceleration
Lorenzo Bianconi
3
-13
/
+97
2025-11-28
netfilter: flowtable: use tuple address to calculate next hop
Pablo Neira Ayuso
1
-4
/
+12
2025-11-28
netfilter: flowtable: remove hw_ifidx
Pablo Neira Ayuso
3
-5
/
+1
2025-11-28
netfilter: flowtable: inline pppoe encapsulation in xmit path
Pablo Neira Ayuso
2
-7
/
+44
2025-11-28
netfilter: flowtable: inline vlan encapsulation in xmit path
Pablo Neira Ayuso
2
-3
/
+29
2025-11-27
netfilter: flowtable: consolidate xmit path
Pablo Neira Ayuso
3
-39
/
+56
2025-11-27
netfilter: flowtable: move path discovery infrastructure to its own file
Pablo Neira Ayuso
3
-259
/
+275
2025-11-27
netfilter: flowtable: check for maximum number of encapsulations in bridge vlan
Pablo Neira Ayuso
1
-1
/
+8
2025-11-04
net: Convert proto_ops connect() callbacks to use sockaddr_unsized
Kees Cook
1
-1
/
+1
2025-11-04
net: Convert proto_ops bind() callbacks to use sockaddr_unsized
Kees Cook
1
-2
/
+2
2025-10-31
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
Jakub Kicinski
2
-4
/
+28
2025-10-30
netfilter: conntrack: disable 0 value for conntrack_max setting
Florian Westphal
2
-3
/
+3
2025-10-30
netfilter: nf_tables: use C99 struct initializer for nft_set_iter
Fernando Fernandez Mancera
2
-26
/
+21
2025-10-29
netfilter: nft_ct: add seqadj extension for natted connections
Andrii Melnychenko
1
-0
/
+5
2025-10-29
netfilter: nft_connlimit: fix possible data race on connection count
Fernando Fernandez Mancera
1
-1
/
+1
2025-10-29
netfilter: nft_ct: enable labels for get case too
Florian Westphal
1
-3
/
+22
[prev]
[next]