summaryrefslogtreecommitdiffstats
path: root/net/ipv4/netfilter
AgeCommit message (Expand)AuthorLines
2026-05-08netfilter: x_tables: close dangling table module init raceFlorian Westphal-56/+60
2026-05-08netfilter: x_tables: add and use xtables_unregister_table_exitFlorian Westphal-11/+12
2026-05-08netfilter: x_tables: unregister the templates firstFlorian Westphal-5/+5
2026-05-08netfilter: x_tables: add and use xt_unregister_table_pre_exitFlorian Westphal-23/+6
2026-05-08netfilter: x_tables: allocate hook ops while under mutexFlorian Westphal-68/+8
2026-04-30netfilter: nf_socket: skip socket lookup for non-first fragmentsFernando Fernandez Mancera-0/+3
2026-04-21netfilter: arp_tables: fix IEEE1394 ARP payload parsingPablo Neira Ayuso-3/+23
2026-04-20netfilter: nat: use kfree_rcu to release opsPablo Neira Ayuso-2/+2
2026-02-25netfilter: nf_tables: remove register tracking infrastructureFlorian Westphal-4/+0
2026-02-02ipv4: use dst4_mtu() instead of dst_mtu()Eric Dumazet-1/+1
2025-09-11netfilter: nf_reject: don't reply to icmp error messagesFlorian Westphal-0/+25
2025-09-02netfilter: nf_reject: remove unneeded exportsFlorian Westphal-10/+17
2025-08-26ipv4: Convert ->flowi4_tos to dscp_t.Guillaume Nault-6/+6
2025-08-25tcp: Don't pass hashinfo to socket lookup helpers.Kuniyuki Iwashima-5/+3
2025-08-21netfilter: nf_reject: don't leak dst refcount for loopback packetsFlorian Westphal-4/+2
2025-08-07netfilter: add back NETFILTER_XTABLES dependenciesArnd Bergmann-0/+3
2025-07-25netfilter: Exclude LEGACY TABLES on PREEMPT_RT.Pablo Neira Ayuso-12/+12
2025-05-23netfilter: nf_dup{4, 6}: Move duplication check to task_structSebastian Andrzej Siewior-4/+4
2025-05-23netfilter: nf_tables: nft_fib: consistent l3mdev handlingFlorian Westphal-2/+9
2025-03-21netfilter: fib: avoid lookup if socket is availableFlorian Westphal-6/+5
2024-11-15netfilter: nf_dup4: Convert nf_dup_ipv4_route() to dscp_t.Guillaume Nault-1/+1
2024-11-15netfilter: nft_fib: Convert nft_fib4_eval() to dscp_t.Guillaume Nault-1/+2
2024-11-15netfilter: rpfilter: Convert rpfilter_mt() to dscp_t.Guillaume Nault-1/+1
2024-11-07Merge tag 'nf-next-24-11-07' of git://git.kernel.org/pub/scm/linux/kernel/git...Paolo Abeni-2/+14
2024-10-15netfilter: Make legacy configs user selectableBreno Leitao-2/+14
2024-10-09netfilter: fib: check correct rtable in vrf setupsFlorian Westphal-3/+1
2024-09-27netfilter: nf_tables: prevent nf_skb_duplicated corruptionEric Dumazet-2/+5
2024-09-26netfilter: nf_reject: Fix build warning when CONFIG_BRIDGE_NETFILTER=nSimon Horman-6/+4
2024-09-09netfilter: nf_dup4: Unmask upper DSCP bits in nf_dup_ipv4_route()Ido Schimmel-1/+2
2024-09-03netfilter: Use kmemdup_array instead of kmemdup for multiple allocationYan Zhen-2/+2
2024-08-29net/ipv4: net: prefer strscpy over strcpyHongbo Li-2/+2
2024-08-26Merge tag 'nf-next-24-08-23' of git://git.kernel.org/pub/scm/linux/kernel/git...Jakub Kicinski-2/+2
2024-08-22netfilter: nft_fib: Unmask upper DSCP bitsIdo Schimmel-1/+2
2024-08-22netfilter: rpfilter: Unmask upper DSCP bitsIdo Schimmel-1/+2
2024-08-20netfilter: nft_fib: Mask upper DSCP bits before FIB lookupIdo Schimmel-3/+1
2024-08-20netfilter: nf_tables: pass context structure to nft_parse_register_loadFlorian Westphal-2/+2
2024-07-31netfilter: iptables: Fix null-ptr-deref in iptable_nat_table_init().Kuniyuki Iwashima-8/+10
2024-05-29netfilter: tproxy: bail out if IP has been disabled on the deviceFlorian Westphal-0/+2
2024-05-06netfilter: use NF_DROP instead of -NF_DROPJason Xing-1/+1
2024-04-10netfilter: complete validation of user inputEric Dumazet-0/+8
2024-04-04netfilter: validate user input for expected lengthEric Dumazet-0/+8
2024-03-28netfilter: arptables: Select NETFILTER_FAMILY_ARP when building arp_tables.cKuniyuki Iwashima-0/+1
2024-02-21netfilter: xtables: fix up kconfig dependenciesFlorian Westphal-1/+2
2024-01-29netfilter: xtables: allow xtables-nft only buildsFlorian Westphal-4/+13
2024-01-29netfilter: arptables: allow xtables-nft only buildsFlorian Westphal-15/+13
2024-01-17netfilter: bridge: replace physindev with physinif in nf_bridge_infoPavel Tikhomirov-3/+6
2024-01-17netfilter: propagate net to nf_bridge_get_physindevPavel Tikhomirov-1/+1
2023-11-09Merge tag 'net-6.7-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/netd...Linus Torvalds-0/+4
2023-11-08netfilter: add missing module descriptionsFlorian Westphal-0/+4
2023-11-02Merge tag 'v6.7-p1' of git://git.kernel.org/pub/scm/linux/kernel/git/herbert/...Linus Torvalds-0/+8