Age | Commit message (Expand) | Author | Files | Lines |
2021-10-14 | netfilter: iptables: allow use of ipt_do_table as hookfn | Florian Westphal | 1 | -3/+3 |
2021-04-26 | netfilter: allow to turn off xtables compat layer | Florian Westphal | 1 | -1/+1 |
2021-04-26 | netfilter: ip_tables: pass table pointer via nf_hook_ops | Florian Westphal | 1 | -4/+2 |
2021-04-26 | netfilter: iptables: unregister the tables by name | Florian Westphal | 1 | -3/+3 |
2021-04-26 | netfilter: x_tables: remove ipt_unregister_table | Florian Westphal | 1 | -3/+0 |
2020-06-25 | netfilter: iptables: Split ipt_unregister_table() into pre_exit and exit help... | David Wilder | 1 | -0/+6 |
2020-03-15 | netfilter: Replace zero-length array with flexible-array member | Gustavo A. R. Silva | 1 | -1/+1 |
2019-09-13 | netfilter: remove CONFIG_NETFILTER checks from headers. | Jeremy Sowden | 1 | -6/+1 |
2019-09-13 | netfilter: ip_tables: remove unused function declarations. | Jeremy Sowden | 1 | -2/+0 |
2019-08-13 | netfilter: add missing IS_ENABLED(CONFIG_NETFILTER) checks to some header-files. | Jeremy Sowden | 1 | -0/+4 |
2017-11-02 | License cleanup: add SPDX GPL-2.0 license identifier to files with no license | Greg Kroah-Hartman | 1 | -0/+1 |
2016-03-02 | netfilter: xtables: prepare for on-demand hook register | Florian Westphal | 1 | -4/+5 |
2015-09-18 | inet netfilter: Remove hook from ip6t_do_table, arp_do_table, ipt_do_table | Eric W. Biederman | 1 | -1/+0 |
2015-04-04 | netfilter: Pass nf_hook_state through ipt_do_table(). | David S. Miller | 1 | -2/+1 |
2012-10-17 | UAPI: Remove empty non-UAPI Kbuild files | David Howells | 1 | -0/+0 |
2012-10-09 | UAPI: (Scripted) Disintegrate include/linux/netfilter_ipv4 | David Howells | 11 | -463/+2 |
2012-06-07 | netfilter: remove include/linux/netfilter_ipv4/ipt_addrtype.h | Cong Wang | 2 | -28/+0 |
2012-05-08 | netfilter: remove ip_queue support | Pablo Neira Ayuso | 2 | -73/+0 |
2012-03-07 | netfilter: remove ipt_SAME.h and ipt_realm.h | WANG Cong | 3 | -29/+0 |
2012-03-07 | netfilter: merge ipt_LOG and ip6_LOG into xt_LOG | Richard Weinberger | 1 | -0/+2 |
2011-12-27 | netfilter: xtables: give xt_ecn its own name | Jan Engelhardt | 1 | -1/+10 |
2011-12-27 | netfilter: xtables: move ipt_ecn to xt_ecn | Jan Engelhardt | 1 | -30/+1 |
2011-12-23 | netfilter: nf_nat: export NAT definitions to userspace | Patrick McHardy | 2 | -59/+0 |
2011-11-01 | netfilter: export NAT definitions through linux/netfilter_ipv4/nf_nat.h | Pablo Neira Ayuso | 2 | -0/+59 |
2011-08-26 | headers, netfilter: Use kernel type names __u8, __u16, __u32 | Ben Hutchings | 1 | -10/+10 |
2011-01-20 | netfilter: xtables: add missing header inclusions for headers_check | Jan Engelhardt | 8 | -0/+16 |
2011-01-18 | netfilter: xtables: use __uXX guarded types for userspace exports | Jan Engelhardt | 8 | -30/+30 |
2010-10-13 | netfilter: xtables: remove unused defines | Jan Engelhardt | 1 | -4/+0 |
2010-10-13 | netfilter: xtables: unify {ip,ip6,arp}t_error_target | Jan Engelhardt | 1 | -7/+3 |
2010-10-13 | netfilter: xtables: resolve indirect macros 3/3 | Jan Engelhardt | 1 | -37/+32 |
2010-10-13 | netfilter: xtables: resolve indirect macros 2/3 | Jan Engelhardt | 1 | -10/+8 |
2010-10-13 | netfilter: xtables: resolve indirect macros 1/3 | Jan Engelhardt | 1 | -4/+6 |
2010-08-14 | include: replace unifdef-y with header-y | Sam Ravnborg | 1 | -3/+2 |
2010-06-28 | netfilter: ipt_LOG/ip6t_LOG: add option to print decoded MAC header | Patrick McHardy | 1 | -1/+2 |
2010-02-24 | netfilter: xtables: replace XT_MATCH_ITERATE macro | Jan Engelhardt | 1 | -5/+1 |
2010-02-24 | netfilter: xtables: replace XT_ENTRY_ITERATE macro | Jan Engelhardt | 1 | -9/+2 |
2010-02-10 | netfilter: xtables: generate initial table on-demand | Jan Engelhardt | 1 | -0/+1 |
2010-01-18 | netfilter: xtables: add struct xt_mtdtor_param::net | Alexey Dobriyan | 1 | -1/+1 |
2009-11-04 | net: cleanup include/linux | Eric Dumazet | 3 | -22/+11 |
2009-08-24 | netfilter: xtables: mark initial tables constant | Jan Engelhardt | 1 | -1/+1 |
2009-08-10 | netfilter: xtables: remove redirecting header files | Jan Engelhardt | 31 | -500/+4 |
2009-08-10 | netfilter: xtables: remove xt_owner v0 | Jan Engelhardt | 2 | -21/+0 |
2009-08-10 | netfilter: xtables: remove xt_iprange v0 | Jan Engelhardt | 2 | -22/+0 |
2009-08-10 | netfilter: xtables: remove xt_TOS v0 | Jan Engelhardt | 3 | -27/+0 |
2009-03-26 | make exported headers use strict posix types | Arnd Bergmann | 1 | -4/+4 |
2008-11-20 | netfilter: ip{,6}t_policy.h should include xp_policy.h | Andy Whitcroft | 1 | -0/+2 |
2008-10-08 | netfilter: rename ipt_recent to xt_recent | Jan Engelhardt | 1 | -17/+11 |
2008-05-21 | netfilter: Move linux/types.h inclusions outside of #ifdef __KERNEL__ | Patrick McHardy | 1 | -1/+1 |
2008-01-31 | [NETFILTER]: x_tables: return new table from {arp,ip,ip6}t_register_table() | Alexey Dobriyan | 1 | -2/+3 |
2008-01-28 | [NETFILTER]: Rename ipt_iprange to xt_iprange | Jan Engelhardt | 1 | -5/+1 |
2008-01-28 | [NETFILTER]: Annotate start of kernel fields in NF headers | Jan Engelhardt | 1 | -0/+1 |
2008-01-28 | [NETFILTER]: ip_tables: fix compat types | Patrick McHardy | 1 | -5/+20 |
2008-01-28 | [NETFILTER]: {ip,ip6,arp}_tables: consolidate iterator macros | Patrick McHardy | 1 | -49/+6 |
2008-01-28 | [NETFILTER]: ipt_addrtype: limit address type checking to an interface | Laszlo Attila Toth | 1 | -0/+14 |
2008-01-28 | [NETFILTER]: Introduce NF_INET_ hook values | Patrick McHardy | 1 | -4/+4 |
2007-11-07 | [NETFILTER]: Sort matches/targets in Kbuild file | Jan Engelhardt | 1 | -14/+14 |
2007-10-15 | [NETFILTER]: Replace sk_buff ** with sk_buff * | Herbert Xu | 1 | -1/+1 |
2007-07-18 | [NETFILTER]: ipt_iprange.h must #include <linux/types.h> | Adrian Bunk | 1 | -0/+2 |
2007-07-10 | [NETFILTER]: ipt_CLUSTERIP: add compat code | Patrick McHardy | 1 | -2/+2 |
2007-06-07 | [NETFILTER]: ip_tables: fix compat related crash | Dmitry Mishin | 1 | -0/+20 |
2007-05-10 | [NETFILTER]: Clean up table initialization | Patrick McHardy | 1 | -0/+22 |
2007-04-25 | [NETFILTER]: Remove IPv4 only connection tracking/NAT | Patrick McHardy | 24 | -1705/+1 |
2007-03-05 | [NETFILTER]: conntrack: fix {nf,ip}_ct_iterate_cleanup endless loops | Patrick McHardy | 1 | -1/+1 |
2007-02-12 | [NETFILTER]: ip_conntrack: fix invalid conntrack statistics RCU assumption | Patrick McHardy | 1 | -0/+6 |
2007-02-08 | [NETFILTER]: ip_tables: remove declaration of non-existant ipt_find_target fu... | Patrick McHardy | 1 | -3/+0 |
2007-02-08 | [NETFILTER]: {ip,ip6}_tables: use struct xt_table instead of redefined struct... | Jan Engelhardt | 1 | -6/+3 |
2007-02-08 | [NETFILTER]: {ip,ip6}_tables: remove x_tables wrapper functions | Jan Engelhardt | 1 | -11/+1 |
2007-02-08 | [NETFILTER]: NAT: optional source port randomization support | Eric Leblond | 1 | -0/+1 |
2007-02-08 | [NETFILTER]: add IPv6-capable TCPMSS target | Patrick McHardy | 1 | -4/+3 |
2007-01-23 | [NETFILTER]: Fix iptables ABI breakage on (at least) CRIS | Patrick McHardy | 1 | -1/+1 |
2006-12-04 | [PATCH] severing skbuff.h -> mm.h | Al Viro | 1 | -0/+1 |
2006-12-02 | [NETFILTER]: nf_conntrack/nf_nat: add H.323 helper port | Patrick McHardy | 4 | -1040/+1 |
2006-12-02 | [NETFILTER]: nf_nat: add FTP NAT helper port | Jozsef Kadlecsik | 1 | -1/+39 |
2006-12-02 | [NETFILTER]: x_tables: add NFLOG target | Patrick McHardy | 1 | -1/+1 |
2006-12-02 | [NETFILTER]: x_tables: add port of hashlimit match for IPv4 and IPv6 | Patrick McHardy | 1 | -34/+8 |
2006-12-02 | [NETFILTER]: sip conntrack: better NAT handling | Patrick McHardy | 1 | -1/+4 |
2006-12-02 | [NETFILTER]: sip conntrack: do case insensitive SIP header search | Patrick McHardy | 1 | -1/+2 |
2006-12-02 | [NETFILTER]: sip conntrack: minor cleanup | Patrick McHardy | 1 | -18/+10 |
2006-12-02 | [NETFILTER]: conntrack: add '_get' to {ip, nf}_conntrack_expect_find | Yasuyuki Kozakai | 1 | -1/+1 |
2006-12-02 | [NET]: netfilter checksum annotations | Al Viro | 1 | -2/+2 |
2006-12-02 | [NETFILTER]: More trivial annotations. | Al Viro | 1 | -1/+1 |
2006-11-15 | [NETFILTER]: ip6_tables: fixed conflicted optname for getsockopt | Yasuyuki Kozakai | 1 | -12/+15 |
2006-09-28 | [NETFILTER]: h323 annotations | Al Viro | 1 | -3/+3 |
2006-09-28 | [NETFILTER]: ipt annotations | Al Viro | 1 | -1/+1 |
2006-09-28 | [NETFILTER]: NAT annotations | Al Viro | 1 | -1/+1 |
2006-09-28 | [NETFILTER]: conntrack annotations | Al Viro | 2 | -9/+9 |
2006-09-28 | [NETFILTER]: netfilter misc annotations | Al Viro | 1 | -1/+1 |
2006-09-22 | [NETFILTER]: PPTP conntrack: fix another GRE keymap leak | Patrick McHardy | 1 | -0/+2 |
2006-09-22 | [NETFILTER]: PPTP conntrack: simplify expectation handling | Patrick McHardy | 1 | -1/+1 |
2006-09-22 | [NETFILTER]: PPTP conntrack: fix header definitions | Patrick McHardy | 1 | -4/+5 |
2006-09-22 | [NETFILTER]: PPTP conntrack: get rid of unnecessary byte order conversions | Patrick McHardy | 3 | -17/+17 |
2006-09-22 | [NETFILTER]: PPTP conntrack: fix whitespace errors | Patrick McHardy | 1 | -13/+13 |
2006-09-22 | [NETFILTER]: kill listhelp.h | Patrick McHardy | 1 | -123/+0 |
2006-09-22 | [NETFILTER]: x_tables: remove unused argument to target functions | Patrick McHardy | 1 | -2/+1 |
2006-09-22 | [NETFILTER]: x_tables: replace IPv4 DSCP target by address family independent... | Yasuyuki Kozakai | 1 | -4/+2 |
2006-09-22 | [NETFILTER]: x_tables: replace IPv4 dscp match by address family independent ... | Yasuyuki Kozakai | 1 | -8/+6 |
2006-09-22 | [NETFILTER]: Get rid of HW checksum invalidation | Patrick McHardy | 2 | -8/+4 |
2006-09-19 | [HEADERS] One line per header in Kbuild files to reduce conflicts | David Woodhouse | 1 | -20/+62 |
2006-07-04 | Merge git://git.infradead.org/hdrinstall-2.6 | Linus Torvalds | 1 | -0/+21 |
2006-06-20 | Merge git://git.infradead.org/hdrcleanup-2.6 | Linus Torvalds | 2 | -2/+0 |
2006-06-18 | Add generic Kbuild files for 'make headers_install' | David Woodhouse | 1 | -0/+21 |
2006-06-17 | [SECMARK]: Add secmark support to conntrack | James Morris | 1 | -0/+4 |
2006-06-17 | [NETFILTER]: Add SIP connection tracking helper | Patrick McHardy | 1 | -0/+44 |
2006-06-17 | [NETFILTER]: H.323 helper: Add support for Call Forwarding | Jing Min Zhao | 3 | -1/+10 |
2006-06-17 | [NETFILTER]: conntrack: add sysctl to disable checksumming | Patrick McHardy | 1 | -0/+1 |
2006-05-06 | Merge git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux-2.6 | David Woodhouse | 1 | -1/+1 |
2006-05-03 | [NETFILTER]: H.323 helper: Change author's email address | Jing Min Zhao | 1 | -1/+1 |
2006-04-26 | Don't include linux/config.h from anywhere else in include/ | David Woodhouse | 2 | -2/+0 |
2006-04-09 | [NETFILTER]: H.323 helper: move some function prototypes to ip_conntrack_h323.h | Jing Min Zhao | 3 | -0/+1088 |
2006-04-01 | [NETFILTER]: iptables 32bit compat layer | Dmitry Mishin | 1 | -0/+18 |
2006-04-01 | [NETFILTER]: x_tables: unify IPv4/IPv6 multiport match | Yasuyuki Kozakai | 1 | -23/+8 |
2006-04-01 | [NETFILTER]: x_tables: unify IPv4/IPv6 esp match | Yasuyuki Kozakai | 1 | -10/+4 |
2006-03-27 | [PATCH] Notifier chain update: API changes | Alan Stern | 1 | -8/+9 |
2006-03-22 | [NETFILTER]: futher {ip,ip6,arp}_tables unification | Dmitry Mishin | 1 | -55/+3 |
2006-03-22 | [NETFILTER]: x_tables: set the protocol family in x_tables targets/matches | Pablo Neira Ayuso | 1 | -5/+9 |
2006-03-20 | [NETFILTER]: Add H.323 conntrack/NAT helper | Jing Min Zhao | 2 | -0/+32 |
2006-03-20 | [NETFILTER]: x_tables: replace IPv4/IPv6 policy match by address family indep... | Patrick McHardy | 1 | -53/+16 |
2006-03-20 | [NETFILTER] NAT sequence adjustment: Save eight bytes per conntrack | Harald Welte | 1 | -1/+1 |
2006-02-27 | [NETFILTER]: Restore {ipt,ip6t,ebt}_LOG compatibility | Patrick McHardy | 1 | -1/+2 |
2006-02-04 | [NETFILTER]: Prepare {ipt,ip6t}_policy match for x_tables unification | Patrick McHardy | 1 | -8/+14 |
2006-02-04 | [NETFILTER]: iptables: fix typos in ipt_connbytes.h | Yasuyuki Kozakai | 1 | -2/+2 |
2006-01-12 | [NETFILTER] x_tables: Abstraction layer for {ip,ip6,arp}_tables | Harald Welte | 22 | -384/+155 |
2006-01-10 | [NETFILTER]: Remove unused function from NAT protocol helpers | Patrick McHardy | 1 | -7/+0 |
2006-01-07 | [NETFILTER]: Add ipt_policy/ip6t_policy matches | Patrick McHardy | 1 | -0/+52 |
2005-11-20 | [NETFILTER]: Remove ARRAY_SIZE duplicate | Nicolas Kaiser | 1 | -7/+5 |
2005-11-09 | [NETFILTER]: Add nf_conntrack subsystem. | Yasuyuki Kozakai | 6 | -271/+7 |
2005-10-10 | [NETFILTER] ctnetlink: allow userspace to change TCP state | Pablo Neira Ayuso | 1 | -0/+3 |
2005-10-10 | [NETFILTER]: Use only 32bit counters for CONNTRACK_ACCT | Harald Welte | 1 | -2/+6 |
2005-10-10 | [NETFILTER]: Add missing include to ip_conntrack_tuple.h | Harald Welte | 1 | -0/+2 |
2005-10-10 | [NETFILTER] nat: remove bogus structure member | Harald Welte | 1 | -4/+0 |
2005-09-26 | [NETFILTER]: Fix invalid module autoloading by splitting iptable_nat | Harald Welte | 1 | -7/+5 |
2005-09-22 | [NETFILTER] Fix conntrack event cache deadlock/oops | Harald Welte | 1 | -4/+21 |
2005-09-22 | [NETFILTER] remove unneeded structure definition from conntrack helper | Harald Welte | 1 | -7/+0 |
2005-09-22 | [NETFILTER] Fix sparse endian warnings in pptp helper | Alexey Dobriyan | 2 | -62/+62 |
2005-09-19 | [NETFILTER]: Rename misnamed function | Patrick McHardy | 1 | -1/+1 |
2005-09-19 | [NETFILTER]: Add new PPTP conntrack and NAT helper | Harald Welte | 5 | -0/+476 |
2005-09-06 | [NETFILTER]: kill __ip_ct_expect_unlink_destroy | Pablo Neira Ayuso | 1 | -1/+1 |
2005-09-06 | [NETFILTER]: Handle NAT module load race | Patrick McHardy | 1 | -0/+5 |
2005-09-06 | [NETFILTER]: Add support for permanent expectations | Patrick McHardy | 1 | -0/+5 |
2005-08-29 | [NETFILTER]: Add new iptables TTL target | Harald Welte | 1 | -0/+21 |
2005-08-29 | [NETFILTER]: Add goto target | Patrick McHardy | 1 | -1/+2 |
2005-08-29 | [NETFILTER]: Add string match | Pablo Neira Ayuso | 1 | -0/+18 |
2005-08-29 | [NETFILTER]: Remove two unused files | Domen Puncer | 1 | -20/+0 |
2005-08-29 | [NETFILTER]: Nicer names for ipt_connbytes constants | Patrick McHardy | 1 | -3/+3 |
2005-08-29 | [NETFILTER]: Add new iptables "connbytes" match | Harald Welte | 1 | -0/+25 |
2005-08-29 | [NETFILTER]: New iptables DCCP protocol header match | Harald Welte | 1 | -0/+23 |
2005-08-29 | [NETFILTER]: Fix multiple problems with the conntrack event cache | Patrick McHardy | 2 | -25/+18 |
2005-08-29 | [NETFILTER]: Extend netfilter logging API | Harald Welte | 1 | -0/+1 |
2005-08-29 | [NETFILTER]: Add "nfnetlink_queue" netfilter queue handler over nfnetlink | Harald Welte | 1 | -0/+16 |
2005-08-29 | [NETFILTER]: Add ctnetlink subsystem | Harald Welte | 5 | -17/+85 |
2005-08-29 | [NETFILTER]: connection tracking event notifiers | Harald Welte | 2 | -4/+157 |
2005-08-29 | [NETFILTER]: convert nfmark and conntrack mark to 32bit | Harald Welte | 1 | -1/+1 |
2005-07-26 | [NETFILTER]: Fix ip_conntrack_put() prototype. | Adrian Bunk | 1 | -1/+1 |
2005-07-21 | [NETFILTER]: ip_conntrack_expect_related must not free expectation | Rusty Russell | 2 | -3/+7 |
2005-06-22 | [NETFILTER]: Fix "iptables -D" rule deletion with ipt_CLUSTERIP target. | Harald Welte | 1 | -1/+2 |
2005-06-21 | [NETFILTER]: Kill lockhelp.h | Patrick McHardy | 4 | -134/+2 |
2005-04-16 | Linux-2.6.12-rc2v2.6.12-rc2 | Linus Torvalds | 60 | -0/+2752 |