tangled
alpha
login
or
join now
tjh.dev
/
kernel
1
fork
atom
Linux kernel mirror (for testing)
git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git
kernel
os
linux
1
fork
atom
overview
issues
pulls
pipelines
kernel
/
net
/
netfilter
/
at
9789de8bdc92a9ec95c9bc7b43e94de91acc4460
2 folders
200 files
ipset
netfilter: ipset: Fix oversized kvmalloc() calls
4 years ago
ipvs
netfilter: ipvs: Use the bitmap API to allocate bitmaps
3 years ago
Kconfig
netfilter: conntrack: NF_CONNTRACK_PROCFS should no longer default to y
3 years ago
Makefile
netfilter: nf_flow_table: count pending offload workqueue tasks
3 years ago
core.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netfilter/nf
4 years ago
nf_conncount.c
netfilter: nf_conncount: reduce unnecessary GC
3 years ago
nf_conntrack_acct.c
netfilter: conntrack: remove extension register api
4 years ago
nf_conntrack_amanda.c
netfilter: nf_conntrack_sip: fix expectation clash
6 years ago
nf_conntrack_bpf.c
Merge https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next
3 years ago
nf_conntrack_broadcast.c
netfilter: nf_conntrack: use rcu accessors where needed
3 years ago
nf_conntrack_core.c
Merge https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next
3 years ago
nf_conntrack_ecache.c
netfilter: conntrack: add nf_conntrack_events autodetect mode
4 years ago
nf_conntrack_expect.c
netfilter: conntrack: convert to refcount_t api
4 years ago
nf_conntrack_extend.c
netfilter: extensions: introduce extension genid count
4 years ago
nf_conntrack_ftp.c
netfilter: nf_ct_ftp: prefer skb_linearize
3 years ago
nf_conntrack_h323_asn1.c
netfilter: Use fallthrough pseudo-keyword
5 years ago
nf_conntrack_h323_main.c
netfilter: nf_ct_h323: cap packet size at 64k
3 years ago
nf_conntrack_h323_types.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 484
6 years ago
nf_conntrack_helper.c
netfilter: nf_conntrack: use rcu accessors where needed
3 years ago
nf_conntrack_irc.c
netfilter: nf_ct_irc: cap packet search space to 4k
3 years ago
nf_conntrack_labels.c
netfilter: conntrack: remove extension register api
4 years ago
nf_conntrack_netbios_ns.c
netfilter: nf_conntrack_netbios_ns: fix helper module alias
4 years ago
nf_conntrack_netlink.c
Merge https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next
3 years ago
nf_conntrack_pptp.c
netfilter: nf_conntrack: add missing __rcu annotations
3 years ago
nf_conntrack_proto.c
netfilter: conntrack: add nf_ct_iter_data object for nf_ct_iterate_cleanup*()
4 years ago
nf_conntrack_proto_dccp.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
4 years ago
nf_conntrack_proto_generic.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
nf_conntrack_proto_gre.c
netfilter: conntrack: nf_ct_gre_keymap_flush() removal
4 years ago
nf_conntrack_proto_icmp.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
4 years ago
nf_conntrack_proto_icmpv6.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
4 years ago
nf_conntrack_proto_sctp.c
netfilter: conntrack: don't refresh sctp entries in closed state
4 years ago
nf_conntrack_proto_tcp.c
netfilter: conntrack: remove pr_debug callsites from tcp tracker
3 years ago
nf_conntrack_proto_udp.c
Revert "netfilter: conntrack: mark UDP zero checksum as CHECKSUM_UNNECESSARY"
4 years ago
nf_conntrack_sane.c
netfilter: nf_ct_sane: remove pseudo skb linearization
3 years ago
nf_conntrack_seqadj.c
netfilter: conntrack: remove extension register api
4 years ago
nf_conntrack_sip.c
netfilter: nf_conntrack: use rcu accessors where needed
3 years ago
nf_conntrack_snmp.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 152
6 years ago
nf_conntrack_standalone.c
netfilter: conntrack: fix crash due to confirmed bit load reordering
3 years ago
nf_conntrack_tftp.c
netfilter: nf_conntrack_sip: fix expectation clash
6 years ago
nf_conntrack_timeout.c
netfilter: nf_conntrack: use rcu accessors where needed
3 years ago
nf_conntrack_timestamp.c
netfilter: conntrack: remove extension register api
4 years ago
nf_dup_netdev.c
netfilter: nf_dup_netdev: add and use recursion counter
3 years ago
nf_flow_table_core.c
netfilter: flowtable: prefer refcount_inc
3 years ago
nf_flow_table_inet.c
netfilter: flowtable: Fix QinQ and pppoe support for inet table
4 years ago
nf_flow_table_ip.c
netfilter: flowtable: move dst_check to packet path
3 years ago
nf_flow_table_offload.c
netfilter: nf_flow_table: count pending offload workqueue tasks
3 years ago
nf_flow_table_procfs.c
netfilter: nf_flow_table: count pending offload workqueue tasks
3 years ago
nf_hooks_lwtunnel.c
netfilter: add netfilter hooks to SRv6 data plane
4 years ago
nf_internals.h
netfilter: ctnetlink: add kernel side filtering for dump
6 years ago
nf_log.c
netfilter: nft_log: perform module load from nf_tables
5 years ago
nf_log_syslog.c
netfilter: nf_log: incorrect offset to network header
3 years ago
nf_nat_amanda.c
netfilter: nf_conntrack_sip: fix expectation clash
6 years ago
nf_nat_core.c
Revert "netfilter: nat: force port remap to prevent shadowing well-known ports"
4 years ago
nf_nat_ftp.c
netfilter: nf_conntrack_sip: fix expectation clash
6 years ago
nf_nat_helper.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
nf_nat_irc.c
netfilter: nf_conntrack_sip: fix expectation clash
6 years ago
nf_nat_masquerade.c
netfilter: conntrack: add nf_ct_iter_data object for nf_ct_iterate_cleanup*()
4 years ago
nf_nat_proto.c
netfilter: nat: move nf_xfrm_me_harder to where it is used
5 years ago
nf_nat_redirect.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
nf_nat_sip.c
netfilter: nf_conntrack_sip: fix expectation clash
6 years ago
nf_nat_tftp.c
netfilter: nf_conntrack_sip: fix expectation clash
6 years ago
nf_queue.c
netfilter: nf_queue: handle socket prefetch
4 years ago
nf_sockopt.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
5 years ago
nf_synproxy_core.c
ip: Fix data-races around sysctl_ip_default_ttl.
3 years ago
nf_tables_api.c
netfilter: nf_tables: check NFT_SET_CONCAT flag if field_count is specified
3 years ago
nf_tables_core.c
netfilter: nf_tables: fix crash when nf_trace is enabled
3 years ago
nf_tables_offload.c
netfilter: nf_tables: bail out early if hardware offload is not supported
3 years ago
nf_tables_trace.c
netfilter: nf_tables: avoid skb access on nf_stolen
3 years ago
nfnetlink.c
netfilter: nfnetlink: re-enable conntrack expectation events
3 years ago
nfnetlink_acct.c
netfilter: use nfnetlink_unicast()
4 years ago
nfnetlink_cthelper.c
netfilter: nf_conntrack: use rcu accessors where needed
3 years ago
nfnetlink_cttimeout.c
netfilter: cttimeout: fix slab-out-of-bounds read typo in cttimeout_net_exit
3 years ago
nfnetlink_hook.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next
4 years ago
nfnetlink_log.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
4 years ago
nfnetlink_osf.c
netfilter: nfnetlink_osf: Fix a missing skb_header_pointer() NULL check
4 years ago
nfnetlink_queue.c
netfilter: nf_queue: do not allow packet truncation below transport header offset
3 years ago
nft_bitwise.c
netfilter: nf_tables: upfront validation of data via nft_data_init()
3 years ago
nft_byteorder.c
netfilter: nf_tables: use the correct get/put helpers
3 years ago
nft_chain_filter.c
netfilter: Introduce egress hook
4 years ago
nft_chain_nat.c
netfilter: nf_tables: remove unused arg in nft_set_pktinfo_unspec()
4 years ago
nft_chain_route.c
netfilter: nf_tables: remove unused arg in nft_set_pktinfo_unspec()
4 years ago
nft_cmp.c
netfilter: nf_tables: upfront validation of data via nft_data_init()
3 years ago
nft_compat.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_connlimit.c
netfilter: nf_tables: memcg accounting for dynamically allocated objects
4 years ago
nft_counter.c
netfilter: nf_tables: memcg accounting for dynamically allocated objects
4 years ago
nft_ct.c
netfilter: nf_tables: use correct integer types
3 years ago
nft_dup_netdev.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_dynset.c
netfilter: nf_tables: validate variable length element extension
3 years ago
nft_exthdr.c
netfilter: nf_tables: use correct integer types
3 years ago
nft_fib.c
netfilter: nft_fib: reverse path filter for policy-based routing on iif
4 years ago
nft_fib_inet.c
netfilter: nft_fib: add reduce support
4 years ago
nft_fib_netdev.c
netfilter: nft_fib: add reduce support
4 years ago
nft_flow_offload.c
netfilter: flowtable: fix nft_flow_route source address for nat case
3 years ago
nft_fwd_netdev.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_hash.c
netfilter: nft_hash: track register operations
4 years ago
nft_immediate.c
netfilter: nf_tables: upfront validation of data via nft_data_init()
3 years ago
nft_last.c
netfilter: nf_tables: memcg accounting for dynamically allocated objects
4 years ago
nft_limit.c
netfilter: nft_limit: Clone packet limits' cost value
3 years ago
nft_log.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_lookup.c
netfilter: nft_lookup: only cancel tracking for clobbered dregs
4 years ago
nft_masq.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_meta.c
netfilter: use get_random_u32 instead of prandom
3 years ago
nft_nat.c
netfilter: nat: really support inet nat without l3 address
3 years ago
nft_numgen.c
netfilter: use get_random_u32 instead of prandom
3 years ago
nft_objref.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_osf.c
netfilter: nf_tables: use the correct get/put helpers
3 years ago
nft_payload.c
netfilter: nf_tables: cancel tracking for clobbered destination registers
4 years ago
nft_queue.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
3 years ago
nft_quota.c
netfilter: nf_tables: memcg accounting for dynamically allocated objects
4 years ago
nft_range.c
netfilter: nf_tables: upfront validation of data via nft_data_init()
3 years ago
nft_redir.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_reject.c
netfilter: nft_reject: unify reject init and dump into nft_reject
5 years ago
nft_reject_inet.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_reject_netdev.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_rt.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_set_bitmap.c
netfilter: nft_set_bitmap: Fix spelling mistake
3 years ago
nft_set_hash.c
netfilter: nft_dynset: restore set element counter when failing to update
3 years ago
nft_set_pipapo.c
netfilter: nft_set_pipapo: release elements in clone from abort path
3 years ago
nft_set_pipapo.h
netfilter: nf_tables: prefer direct calls for set lookups
4 years ago
nft_set_pipapo_avx2.c
netfilter: nft_set_pipapo_avx2: remove redundant pointer lt
4 years ago
nft_set_pipapo_avx2.h
netfilter: nf_tables: prefer direct calls for set lookups
4 years ago
nft_set_rbtree.c
netfilter: nft_set_rbtree: overlap detection with element re-addition after deletion
4 years ago
nft_socket.c
netfilter: nf_tables: use the correct get/put helpers
3 years ago
nft_synproxy.c
netfilter: nf_tables: do not reduce read-only expressions
4 years ago
nft_tproxy.c
netfilter: nf_tables: add and use BE register load-store helpers
3 years ago
nft_tunnel.c
netfilter: nf_tables: use correct integer types
3 years ago
nft_xfrm.c
netfilter: nf_tables: use the correct get/put helpers
3 years ago
utils.c
netfilter: use actual socket sk rather than skb sk when routing harder
5 years ago
x_tables.c
Merge https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next
4 years ago
xt_AUDIT.c
netfilter: fix clang-12 fmt string warnings
4 years ago
xt_CHECKSUM.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_CLASSIFY.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_CONNSECMARK.c
netfilter: Replace HTTP links with HTTPS ones
5 years ago
xt_CT.c
netfilter: nf_conntrack: use rcu accessors where needed
3 years ago
xt_DSCP.c
netfilter: x_tables: use correct integer types
3 years ago
xt_HL.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_HMARK.c
netfilter: xt_HMARK: Use ip_is_fragment() helper
5 years ago
xt_IDLETIMER.c
netfilter: xt_IDLETIMER: replace snprintf in show functions with sysfs_emit
4 years ago
xt_LED.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 164
6 years ago
xt_LOG.c
netfilter: log: work around missing softdep backend module
4 years ago
xt_MASQUERADE.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_NETMAP.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_NFLOG.c
netfilter: log: work around missing softdep backend module
4 years ago
xt_NFQUEUE.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_RATEEST.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
4 years ago
xt_REDIRECT.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_SECMARK.c
netfilter: xt_SECMARK: add new revision to fix structure layout
5 years ago
xt_TCPMSS.c
netfilter: x_tables: use correct integer types
3 years ago
xt_TCPOPTSTRIP.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_TEE.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 3
6 years ago
xt_TPROXY.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
3 years ago
xt_TRACE.c
netfilter: nf_log: add module softdeps
5 years ago
xt_addrtype.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_bpf.c
bpf: Refactor BPF_PROG_RUN into a function
4 years ago
xt_cgroup.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_cluster.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_comment.c
treewide: Add SPDX license identifier for more missed files
6 years ago
xt_connbytes.c
netfilter: x_tables: use pr ratelimiting in all remaining spots
8 years ago
xt_connlabel.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_connlimit.c
netfilter: x_tables: use correct integer types
3 years ago
xt_connmark.c
netfilter: Replace HTTP links with HTTPS ones
5 years ago
xt_conntrack.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_cpu.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_dccp.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_devgroup.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_dscp.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_ecn.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_esp.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_hashlimit.c
Merge https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next
4 years ago
xt_helper.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_hl.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_ipcomp.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 152
6 years ago
xt_iprange.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_ipvs.c
treewide: Add SPDX license identifier for more missed files
6 years ago
xt_l2tp.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_length.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_limit.c
netfilter: x_tables: improve limit_mt scalability
5 years ago
xt_mac.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_mark.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_multiport.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_nat.c
netfilter: Add MODULE_DESCRIPTION entries to kernel modules
5 years ago
xt_nfacct.c
netfilter: Remove unnecessary conversion to bool
5 years ago
xt_osf.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 13
6 years ago
xt_owner.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_physdev.c
netfilter: inline xt_hashlimit, ebt_802_3 and xt_physdev headers
6 years ago
xt_pkttype.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_policy.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_quota.c
treewide: Add SPDX license identifier for more missed files
6 years ago
xt_rateest.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_realm.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_recent.c
Merge https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf-next
4 years ago
xt_repldata.h
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
8 years ago
xt_sctp.c
treewide: Add SPDX license identifier for more missed files
6 years ago
xt_set.c
netfilter: inline four headers files into another one.
6 years ago
xt_socket.c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net
4 years ago
xt_state.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_statistic.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_string.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_tcpmss.c
treewide: Replace GPLv2 boilerplate/reference with SPDX - rule 500
6 years ago
xt_tcpudp.c
treewide: Add SPDX license identifier for more missed files
6 years ago
xt_time.c
netfilter: Replace HTTP links with HTTPS ones
5 years ago
xt_u32.c
treewide: Add SPDX license identifier for more missed files
6 years ago