summaryrefslogtreecommitdiffstats
path: root/net/netfilter
AgeCommit message (Expand)AuthorLines
2026-04-10netfilter: require Ethernet MAC header before using eth_hdr()Zhengchuan Liang-12/+19
2026-04-10netfilter: nft_fwd_netdev: check ttl/hl before forwardingFlorian Westphal-0/+10
2026-04-10netfilter: x_tables: Avoid a couple -Wflex-array-member-not-at-end warningsGustavo A. R. Silva-4/+8
2026-04-10netfilter: conntrack: remove UDP-Lite conntrack supportFernando Fernandez Mancera-160/+0
2026-04-10netfilter: xt_socket: enable defrag after all other checksFlorian Westphal-17/+6
2026-04-10netfilter: xt_HL: add pr_fmt and checkentry validationMarino Dzalto-0/+27
2026-04-10netfilter: nfnetlink: prefer skb_mac_header helpersFlorian Westphal-22/+22
2026-04-10netfilter: x_physdev: reject empty or not-nul terminated device namesFlorian Westphal-0/+22
2026-04-10ipvs: add conn_lfactor and svc_lfactor sysctl varsJulian Anastasov-0/+76
2026-04-10ipvs: add ip_vs_status infoJulian Anastasov-0/+145
2026-04-10ipvs: show the current conn_tab size to usersJulian Anastasov-4/+22
2026-04-09Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski-100/+84
2026-04-08netfilter: nfnetlink_queue: make hash table per queueFlorian Westphal-90/+49
2026-04-08netfilter: nft_ct: fix use-after-free in timeout object destroyTuan Do-1/+1
2026-04-08netfilter: xt_multiport: validate range encoding in checkentryRen Wei-4/+30
2026-04-08netfilter: nfnetlink_log: initialize nfgenmsg in NLMSG_DONE terminatorXiang Mei-4/+4
2026-04-08ipvs: fix NULL deref in ip_vs_add_service error pathWeiming Shi-1/+0
2026-04-08netfilter: nf_tables_offload: add nft_flow_action_entry_next() and use itPablo Neira Ayuso-2/+7
2026-04-08netfilter: nf_conntrack_h323: Correct indentation when H323_TRACE definedDavid Laight-19/+19
2026-04-08netfilter: nft_meta: add double-tagged vlan and pppoe supportPablo Neira Ayuso-3/+55
2026-04-08netfilter: nft_set_pipapo_avx2: remove redundant loop in lookup_slowFlorian Westphal-23/+9
2026-04-08netfilter: nft_set_pipapo: increment data in one stepFlorian Westphal-6/+1
2026-04-08netfilter: nf_tables: add netlink policy based cap on registersFlorian Westphal-28/+28
2026-04-08netfilter: add more netlink-based policy range checksFlorian Westphal-30/+43
2026-04-08netfilter: nf_conntrack_h323: remove unreliable debug code in decode_octstrFlorian Westphal-7/+0
2026-04-08netfilter: add deprecation warning for dccp supportFlorian Westphal-0/+6
2026-04-08netfilter: nf_conntrack_sip: remove net variable shadowingFlorian Westphal-2/+1
2026-04-08netfilter: use function typedefs for __rcu NAT helper hook pointersSun Jian-34/+10
2026-04-02Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski-120/+191
2026-04-01netfilter: nf_tables: reject immediate NF_QUEUE verdictPablo Neira Ayuso-2/+5
2026-04-01netfilter: x_tables: restrict xt_check_match/xt_check_target extensions for N...Pablo Neira Ayuso-0/+23
2026-04-01netfilter: ipset: drop logically empty buckets in mtype_delYifan Wu-1/+1
2026-04-01netfilter: ctnetlink: ignore explicit helper on new expectationsPablo Neira Ayuso-45/+9
2026-04-01netfilter: ctnetlink: zero expect NAT fields when CTA_EXPECT_NAT absentQi Tang-0/+6
2026-04-01netfilter: nf_conntrack_helper: pass helper to expect cleanupQi Tang-1/+1
2026-04-01netfilter: ipset: use nla_strcmp for IPSET_ATTR_NAME attrFlorian Westphal-4/+4
2026-04-01netfilter: x_tables: ensure names are nul-terminatedFlorian Westphal-0/+11
2026-04-01netfilter: nfnetlink_log: account for netlink header sizeFlorian Westphal-1/+1
2026-04-01netfilter: flowtable: strictly check for maximum number of actionsPablo Neira Ayuso-66/+130
2026-03-29netfilter: remove nf_ipv6_ops and use direct function callsFernando Fernandez Mancera-27/+20
2026-03-29ipv6: convert CONFIG_IPV6 to built-in only and clean up KconfigsFernando Fernandez Mancera-8/+0
2026-03-26Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/netJakub Kicinski-99/+196
2026-03-26netfilter: ctnetlink: use netlink policy range checksDavid Carlier-18/+8
2026-03-26netfilter: nf_conntrack_sip: fix use of uninitialized rtp_addr in process_sdpWeiming Shi-4/+10
2026-03-26netfilter: nf_conntrack_expect: skip expectations in other netns via procPablo Neira Ayuso-0/+4
2026-03-26netfilter: nf_conntrack_expect: store netns and zone in expectationPablo Neira Ayuso-3/+17
2026-03-26netfilter: ctnetlink: ensure safe access to master conntrackPablo Neira Ayuso-10/+30
2026-03-26netfilter: nf_conntrack_expect: use expect->helperPablo Neira Ayuso-21/+13
2026-03-26netfilter: nf_conntrack_expect: honor expectation helper fieldPablo Neira Ayuso-11/+28
2026-03-26netfilter: nft_set_rbtree: revisit array resize logicPablo Neira Ayuso-17/+75