summaryrefslogtreecommitdiff
path: root/net/netfilter
AgeCommit message (Expand)Author
2023-10-10netfilter: nf_tables: nft_set_rbtree: fix spurious insertion failureFlorian Westphal
2023-10-10netfilter: nf_tables: Deduplicate nft_register_obj audit logsPhil Sutter
2023-10-10netfilter: handle the connecting collision properly in nf_conntrack_proto_sctpXin Long
2023-10-10net: replace calls to sock->ops->connect() with kernel_connect()Jordan Rife
2023-10-06netfilter: nf_tables: fix kdoc warnings after gc reworkFlorian Westphal
2023-10-06netfilter: nf_tables: disallow rule removal from chain bindingPablo Neira Ayuso
2023-10-06netfilter: ipset: Fix race between IPSET_CMD_CREATE and IPSET_CMD_SWAPJozsef Kadlecsik
2023-10-06netfilter: nf_tables: disable toggling dormant table state more than onceFlorian Westphal
2023-10-06netfilter, bpf: Adjust timeouts of non-confirmed CTs in bpf_ct_insert_entry()Ilya Leoshkevich
2023-10-06netfilter: conntrack: fix extension size tableFlorian Westphal
2023-10-06netfilter: nf_tables: disallow element removal on anonymous setsPablo Neira Ayuso
2023-10-06netfilter: nf_tables: fix memleak when more than 255 elements expiredFlorian Westphal
2023-10-06netfilter: nft_set_hash: try later when GC hits EAGAIN on iterationPablo Neira Ayuso
2023-10-06netfilter: nft_set_pipapo: stop GC iteration if GC transaction allocation failsPablo Neira Ayuso
2023-10-06netfilter: nft_set_pipapo: call nft_trans_gc_queue_sync() in catchall GCPablo Neira Ayuso
2023-10-06netfilter: nft_set_rbtree: use read spinlock to avoid datapath contentionPablo Neira Ayuso
2023-10-06netfilter: nft_set_rbtree: skip sync GC for new elements in this transactionPablo Neira Ayuso
2023-10-06netfilter: nf_tables: defer gc run if previous batch is still pendingFlorian Westphal
2023-10-06netfilter: nf_tables: use correct lock to protect gc_listPablo Neira Ayuso
2023-10-06netfilter: nf_tables: GC transaction race with abort pathPablo Neira Ayuso
2023-10-06netfilter: nf_tables: GC transaction race with netns dismantlePablo Neira Ayuso
2023-10-06netfilter: nf_tables: fix GC transaction races with netns and netlink event e...Pablo Neira Ayuso
2023-10-06netfilter: nf_tables: don't fail inserts if duplicate has expiredFlorian Westphal
2023-10-06netfilter: nf_tables: remove busy mark and gc batch APIPablo Neira Ayuso
2023-10-06netfilter: nft_set_hash: mark set element as dead when deleting from packet pathPablo Neira Ayuso
2023-10-06netfilter: nf_tables: adapt set backend to use GC transaction APIPablo Neira Ayuso
2023-10-06netfilter: nf_tables: GC transaction API to avoid race with control planePablo Neira Ayuso
2023-10-06netfilter: nf_tables: don't skip expired elements during walkFlorian Westphal
2023-09-19netfilter: nfnetlink_osf: avoid OOB readWander Lairson Costa
2023-09-19netfilter: nftables: exthdr: fix 4-byte stack OOB writeFlorian Westphal
2023-09-13netfilter: xt_sctp: validate the flag_info countWander Lairson Costa
2023-09-13netfilter: xt_u32: validate user space inputWander Lairson Costa
2023-09-13netfilter: nft_exthdr: Fix non-linear header modificationXiao Liang
2023-09-13netfilter: ipset: add the missing IP_SET_HASH_WITH_NET0 macro for ip_set_hash...Kyle Zeng
2023-08-30netfilter: nf_tables: fix out of memory error handlingFlorian Westphal
2023-08-30netfilter: nf_tables: flush pending destroy work before netlink notifierPablo Neira Ayuso
2023-08-23netfilter: set default timeout to 3 secs for sctp shutdown send and recv stateXin Long
2023-08-23netfilter: nft_dynset: disallow object mapsPablo Neira Ayuso
2023-08-23ipvs: fix racy memcpy in proc_do_sync_thresholdSishuai Gong
2023-08-23netfilter: nf_tables: deactivate catchall elements in next generationFlorian Westphal
2023-08-23netfilter: nf_tables: fix false-positive lockdep splatFlorian Westphal
2023-08-16netfilter: nf_tables: report use refcount overflowPablo Neira Ayuso
2023-08-11net: annotate data-races around sk->sk_markEric Dumazet
2023-08-03netfilter: nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHA...Pablo Neira Ayuso
2023-08-03netfilter: nf_tables: skip immediate deactivate in _PREPARE_ERRORPablo Neira Ayuso
2023-08-03netfilter: nft_set_rbtree: fix overlap expiration walkFlorian Westphal
2023-08-03netfilter: nf_tables: fix underflow in chain reference counterPablo Neira Ayuso
2023-08-03netfilter: nf_tables: fix underflow in object reference counterPablo Neira Ayuso
2023-07-27netfilter: nf_tables: skip bound chain on rule flushPablo Neira Ayuso
2023-07-27netfilter: nf_tables: skip bound chain in netns release pathPablo Neira Ayuso