Age | Commit message (Expand) | Author | Files | Lines |
2021-08-09 | netfilter: x_tables: never register tables by default | Florian Westphal | 1 | -3/+3 |
2021-05-29 | netfilter: x_tables: reduce xt_action_param by 8 byte | Florian Westphal | 1 | -1/+1 |
2021-04-26 | netfilter: allow to turn off xtables compat layer | Florian Westphal | 1 | -6/+6 |
2021-04-26 | netfilter: ip_tables: pass table pointer via nf_hook_ops | Florian Westphal | 1 | -0/+3 |
2021-04-26 | netfilter: x_tables: add xt_find_table | Florian Westphal | 1 | -0/+1 |
2021-03-15 | netfilter: x_tables: Use correct memory barriers. | Mark Tomlinson | 1 | -1/+1 |
2021-03-15 | Revert "netfilter: x_tables: Switch synchronization to RCU" | Mark Tomlinson | 1 | -4/+1 |
2020-12-08 | netfilter: x_tables: Switch synchronization to RCU | Subash Abhinov Kasiviswanathan | 1 | -1/+4 |
2020-07-24 | netfilter: switch xt_copy_counters to sockptr_t | Christoph Hellwig | 1 | -2/+2 |
2020-07-19 | netfilter: remove the compat argument to xt_copy_counters_from_user | Christoph Hellwig | 1 | -1/+1 |
2020-03-15 | netfilter: Replace zero-length array with flexible-array member | Gustavo A. R. Silva | 1 | -4/+4 |
2019-09-13 | netfilter: remove CONFIG_NETFILTER checks from headers. | Jeremy Sowden | 1 | -6/+0 |
2019-09-13 | netfilter: fix coding-style errors. | Jeremy Sowden | 1 | -1/+1 |
2019-08-13 | netfilter: add missing IS_ENABLED(CONFIG_NETFILTER) checks to some header-files. | Jeremy Sowden | 1 | -0/+6 |
2019-04-08 | netfilter: make two functions static | Florian Westphal | 1 | -1/+0 |
2019-03-01 | netfilter: convert the proto argument from u8 to u16 | Li RongQing | 1 | -2/+2 |
2018-03-30 | Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-next | David S. Miller | 1 | -1/+4 |
2018-03-11 | netfilter: x_tables: add and use xt_check_proc_name | Florian Westphal | 1 | -0/+2 |
2018-03-05 | netfilter: compat: prepare xt_compat_init_offsets to return errors | Florian Westphal | 1 | -1/+1 |
2018-03-05 | netfilter: x_tables: add counters allocation wrapper | Florian Westphal | 1 | -0/+1 |
2018-03-05 | netfilter: x_tables: move hook entry checks into core | Florian Westphal | 1 | -0/+2 |
2018-01-08 | netfilter: xtables: add and use xt_request_find_table_lock | Florian Westphal | 1 | -0/+2 |
2017-11-02 | License cleanup: add SPDX GPL-2.0 license identifier to files with no license | Greg Kroah-Hartman | 1 | -0/+1 |
2017-05-15 | netfilter: xtables: zero padding in data_to_user | Willem de Bruijn | 1 | -1/+1 |
2017-01-09 | xtables: add xt_match, xt_target and data copy_to_user functions | Willem de Bruijn | 1 | -0/+9 |
2016-12-06 | netfilter: x_tables: pack percpu counter allocations | Florian Westphal | 1 | -1/+6 |
2016-12-06 | netfilter: x_tables: pass xt_counters struct to counter allocator | Florian Westphal | 1 | -26/+1 |
2016-12-06 | netfilter: x_tables: pass xt_counters struct instead of packet counter | Florian Westphal | 1 | -5/+1 |
2016-11-03 | netfilter: x_tables: move hook state into xt_action_param structure | Pablo Neira Ayuso | 1 | -10/+38 |
2016-07-18 | netfilter: x_tables: speed up jump target validation | Florian Westphal | 1 | -0/+4 |
2016-07-03 | netfilter: Convert FWINV<[foo]> macros and uses to NF_INVF | Joe Perches | 1 | -0/+4 |
2016-04-29 | netfilter: fix IS_ERR_VALUE usage | Pablo Neira Ayuso | 1 | -3/+3 |
2016-04-14 | netfilter: x_tables: introduce and use xt_copy_counters_from_user | Florian Westphal | 1 | -0/+3 |
2016-04-14 | netfilter: x_tables: xt_compat_match_from_user doesn't need a retval | Florian Westphal | 1 | -1/+1 |
2016-04-14 | netfilter: x_tables: check for bogus target offset | Florian Westphal | 1 | -2/+2 |
2016-04-14 | netfilter: x_tables: add compat version of xt_check_entry_offsets | Florian Westphal | 1 | -0/+3 |
2016-04-14 | netfilter: x_tables: add and use xt_check_entry_offsets | Florian Westphal | 1 | -0/+4 |
2016-03-02 | netfilter: xtables: don't hook tables by default | Florian Westphal | 1 | -2/+4 |
2015-09-18 | netfilter: x_tables: Pass struct net in xt_action_param | Eric W. Biederman | 1 | -1/+2 |
2015-07-15 | netfilter: add and use jump label for xt_tee | Florian Westphal | 1 | -0/+7 |
2015-07-15 | netfilter: xtables: don't save/restore jumpstack offset | Florian Westphal | 1 | -1/+0 |
2015-06-18 | netfilter: xtables: fix warnings on 32bit platforms | Florian Westphal | 1 | -4/+4 |
2015-06-18 | netfilter: x_tables: align per cpu xt_counter | Eric Dumazet | 1 | -2/+4 |
2015-06-15 | netfilter: x_tables: remove XT_TABLE_INFO_SZ and a dereference. | Eric Dumazet | 1 | -4/+1 |
2015-06-12 | netfilter: xtables: avoid percpu ruleset duplication | Florian Westphal | 1 | -2/+2 |
2015-06-12 | netfilter: xtables: use percpu rule counters | Florian Westphal | 1 | -0/+49 |
2015-05-15 | netfilter: x_tables: add context to know if extension runs from nft_compat | Pablo Neira Ayuso | 1 | -0/+2 |
2013-09-26 | netfilter: Remove extern from function prototypes | Joe Perches | 1 | -65/+63 |
2012-10-09 | UAPI: (Scripted) Disintegrate include/linux/netfilter | David Howells | 1 | -185/+1 |
2011-12-22 | percpu: Remove irqsafe_cpu_xxx variants | Christoph Lameter | 1 | -2/+2 |
2011-04-04 | netfilter: get rid of atomic ops in fast path | Eric Dumazet | 1 | -54/+42 |
2011-01-19 | Merge branch 'master' of /repos/git/net-next-2.6 | Patrick McHardy | 1 | -5/+5 |
2011-01-13 | netfilter: x_table: speedup compat operations | Eric Dumazet | 1 | -1/+2 |
2011-01-10 | netfilter: x_tables: dont block BH while reading counters | Eric Dumazet | 1 | -5/+5 |
2010-10-13 | netfilter: xtables: unify {ip,ip6,arp}t_error_target | Jan Engelhardt | 1 | -0/+5 |
2010-05-31 | netfilter: xtables: stackptr should be percpu | Eric Dumazet | 1 | -1/+1 |
2010-05-20 | netfilter: fix description of expected checkentry return code on xt_target | Luciano Coelho | 1 | -1/+1 |
2010-05-11 | netfilter: xtables: change hotdrop pointer to direct modification | Jan Engelhardt | 1 | -1/+4 |
2010-05-11 | netfilter: xtables: deconstify struct xt_action_param for matches | Jan Engelhardt | 1 | -1/+1 |
2010-05-11 | netfilter: xtables: substitute temporary defines by final name | Jan Engelhardt | 1 | -2/+0 |
2010-05-11 | netfilter: xtables: combine struct xt_match_param and xt_target_param | Jan Engelhardt | 1 | -25/+17 |
2010-04-27 | netfilter: x_tables: rectify XT_FUNCTION_MAXNAMELEN usage | Jan Engelhardt | 1 | -8/+6 |
2010-04-19 | netfilter: xtables: make ip_tables reentrant | Jan Engelhardt | 1 | -0/+7 |
2010-04-13 | netfilter: xtables: make XT_ALIGN() usable in exported headers by exporting _... | Alexey Dobriyan | 1 | -3/+3 |
2010-03-25 | netfilter: xtables: change xt_target.checkentry return type | Jan Engelhardt | 1 | -2/+2 |
2010-03-25 | netfilter: xtables: change xt_match.checkentry return type | Jan Engelhardt | 1 | -1/+1 |
2010-03-25 | netfilter: xtables: consolidate code into xt_request_find_match | Jan Engelhardt | 1 | -0/+2 |
2010-03-18 | netfilter: xtables: reduce holes in struct xt_target | Jan Engelhardt | 1 | -1/+1 |
2010-03-18 | netfilter: xtables: remove almost-unused xt_match_param.data member | Jan Engelhardt | 1 | -3/+0 |
2010-03-18 | netfilter: update documentation fields of x_tables.h | Jan Engelhardt | 1 | -2/+8 |
2010-02-24 | netfilter: xtables: replace XT_MATCH_ITERATE macro | Jan Engelhardt | 1 | -1/+9 |
2010-02-24 | netfilter: xtables: replace XT_ENTRY_ITERATE macro | Jan Engelhardt | 1 | -0/+9 |
2010-02-15 | netfilter: CONFIG_COMPAT: allow delta to exceed 32767 | Florian Westphal | 1 | -1/+1 |
2010-02-15 | netfilter: xtables: constify args in compat copying functions | Jan Engelhardt | 1 | -6/+6 |
2010-02-10 | Merge branch 'master' of git://dev.medozas.de/linux | Patrick McHardy | 1 | -0/+4 |
2010-02-10 | netfilter: xtables: use xt_table for hook instantiation | Jan Engelhardt | 1 | -0/+4 |
2010-02-10 | netfilter: xtables: symmetric COMPAT_XT_ALIGN definition | Alexey Dobriyan | 1 | -4/+9 |
2010-02-10 | netfilter: xtables: consistent struct compat_xt_counters definition | Alexey Dobriyan | 1 | -5/+1 |
2010-02-03 | netfilter: add struct net * to target parameters | Patrick McHardy | 1 | -0/+2 |
2010-02-02 | netfilter: xtables: CONFIG_COMPAT redux | Alexey Dobriyan | 1 | -4/+8 |
2010-01-18 | netfilter: xtables: add struct xt_mtdtor_param::net | Alexey Dobriyan | 1 | -0/+1 |
2010-01-18 | netfilter: xtables: add struct xt_mtchk_param::net | Alexey Dobriyan | 1 | -0/+1 |
2009-11-04 | net: cleanup include/linux | Eric Dumazet | 1 | -30/+15 |
2009-08-24 | netfilter: xtables: mark initial tables constant | Jan Engelhardt | 1 | -1/+1 |
2009-08-10 | netfilter: xtables: realign struct xt_target_param | Jan Engelhardt | 1 | -1/+1 |
2009-06-04 | netfilter: x_tables: added hook number into match extension parameter structure. | Evgeniy Polyakov | 1 | -2/+4 |
2009-05-01 | netfilter: use likely() in xt_info_rdlock_bh() | Eric Dumazet | 1 | -2/+2 |
2009-04-28 | netfilter: revised locking for x_tables | Stephen Hemminger | 1 | -5/+68 |
2009-03-26 | Merge branch 'master' of git://git.kernel.org/pub/scm/linux/kernel/git/kaber/... | David S. Miller | 1 | -0/+23 |
2009-03-26 | Merge branch 'header-fixes-for-linus' of git://git.kernel.org/pub/scm/linux/k... | Linus Torvalds | 1 | -14/+16 |
2009-03-26 | make netfilter use strict integer types | Arnd Bergmann | 1 | -14/+16 |
2009-03-25 | netfilter: factorize ifname_compare() | Eric Dumazet | 1 | -0/+23 |
2009-02-20 | netfilter: iptables: lock free counters | Stephen Hemminger | 1 | -2/+4 |
2009-02-18 | netfilter: x_tables: change elements in x_tables | Stephen Hemminger | 1 | -5/+4 |
2009-01-12 | netfilter 09/09: remove padding from struct xt_match on 64bit builds | Richard Kennedy | 1 | -1/+1 |
2008-11-24 | netfilter: xtables: add missing const qualifier to xt_tgchk_param | Jan Engelhardt | 1 | -1/+1 |
2008-10-08 | netfilter: xtables: provide invoked family value to extensions | Jan Engelhardt | 1 | -2/+10 |
2008-10-08 | netfilter: xtables: move extension arguments into compound structure (6/6) | Jan Engelhardt | 1 | -1/+7 |
2008-10-08 | netfilter: xtables: move extension arguments into compound structure (5/6) | Jan Engelhardt | 1 | -9/+20 |
2008-10-08 | netfilter: xtables: move extension arguments into compound structure (4/6) | Jan Engelhardt | 1 | -5/+17 |
2008-10-08 | netfilter: xtables: move extension arguments into compound structure (3/6) | Jan Engelhardt | 1 | -1/+7 |
2008-10-08 | netfilter: xtables: move extension arguments into compound structure (2/6) | Jan Engelhardt | 1 | -10/+22 |
2008-10-08 | netfilter: xtables: move extension arguments into compound structure (1/6) | Jan Engelhardt | 1 | -7/+21 |
2008-10-08 | netfilter: xtables: do centralized checkentry call (1/2) | Jan Engelhardt | 1 | -2/+4 |
2008-10-08 | netfilter: Use unsigned types for hooknum and pf vars | Jan Engelhardt | 1 | -14/+14 |
2008-04-14 | [NETFILTER]: annotate {arp,ip,ip6,x}tables with const | Jan Engelhardt | 1 | -2/+2 |
2008-01-31 | [NETFILTER]: x_tables: create per-netns /proc/net/*_tables_* | Alexey Dobriyan | 1 | -2/+2 |
2008-01-31 | [NETFILTER]: {ip,arp,ip6}_tables: fix sparse warnings in compat code | Patrick McHardy | 1 | -4/+4 |
2008-01-31 | [NETFILTER]: x_tables: per-netns xt_tables | Alexey Dobriyan | 1 | -2/+4 |
2008-01-31 | [NETFILTER]: x_tables: change xt_table_register() return value convention | Alexey Dobriyan | 1 | -3/+3 |
2008-01-31 | [NETFILTER]: Use const in struct xt_match, xt_target, xt_table | Jan Engelhardt | 1 | -3/+3 |
2008-01-28 | [NETFILTER]: ip_tables: move compat offset calculation to x_tables | Patrick McHardy | 1 | -0/+4 |
2008-01-28 | [NETFILTER]: {ip,ip6,arp}_tables: consolidate iterator macros | Patrick McHardy | 1 | -0/+43 |
2008-01-28 | [NETFILTER]: x_tables: make xt_compat_match_from_user usable in iterator macros | Patrick McHardy | 1 | -2/+2 |
2008-01-28 | [NETFILTER]: x_tables: struct xt_table_info diet | Eric Dumazet | 1 | -1/+4 |
2008-01-28 | [NETFILTER]: Introduce NF_INET_ hook values | Patrick McHardy | 1 | -2/+2 |
2007-10-15 | [NETFILTER]: Replace sk_buff ** with sk_buff * | Herbert Xu | 1 | -1/+1 |
2007-07-10 | [NETFILTER]: x_tables: switch xt_target->checkentry to bool | Jan Engelhardt | 1 | -5/+5 |
2007-07-10 | [NETFILTER]: x_tables: switch xt_match->checkentry to bool | Jan Engelhardt | 1 | -5/+5 |
2007-07-10 | [NETFILTER]: x_tables: switch xt_match->match to bool | Jan Engelhardt | 1 | -8/+8 |
2007-07-10 | [NETFILTER]: x_tables: switch hotdrop to bool | Jan Engelhardt | 1 | -1/+1 |
2007-05-10 | [NETFILTER]: Clean up table initialization | Patrick McHardy | 1 | -0/+8 |
2006-11-15 | [NETFILTER]: ip6_tables: fixed conflicted optname for getsockopt | Yasuyuki Kozakai | 1 | -16/+0 |
2006-09-24 | [PATCH] fix iptables __user misannotations | Al Viro | 1 | -2/+2 |
2006-09-22 | [NETFILTER]: x_tables: simplify compat API | Patrick McHardy | 1 | -11/+18 |
2006-09-22 | [NETFILTER]: kill listhelp.h | Patrick McHardy | 1 | -4/+0 |
2006-09-22 | [NETFILTER]: x_tables: add data member to struct xt_match | Patrick McHardy | 1 | -0/+3 |
2006-09-22 | [NETFILTER]: x_tables: remove unused size argument to check/destroy functions | Patrick McHardy | 1 | -6/+2 |
2006-09-22 | [NETFILTER]: x_tables: remove unused argument to target functions | Patrick McHardy | 1 | -2/+1 |
2006-09-22 | [NETFILTER]: x_tables: add helpers for mass match/target registration | Patrick McHardy | 1 | -0/+5 |
2006-05-01 | [NETFILTER] x_tables: fix compat related crash on non-x86 | Patrick McHardy | 1 | -0/+8 |
2006-04-24 | [NETFILTER]: Fix compat_xt_counters alignment for non-x86 | Patrick McHardy | 1 | -0/+4 |
2006-04-01 | [NETFILTER]: iptables 32bit compat layer | Dmitry Mishin | 1 | -0/+67 |
2006-03-22 | [NETFILTER]: futher {ip,ip6,arp}_tables unification | Dmitry Mishin | 1 | -0/+56 |
2006-03-22 | [NETFILTER]: x_tables: set the protocol family in x_tables targets/matches | Pablo Neira Ayuso | 1 | -4/+4 |
2006-03-20 | [NETFILTER]: x_tables: replace IPv4/IPv6 policy match by address family indep... | Patrick McHardy | 1 | -0/+4 |
2006-03-20 | [NETFILTER]: x_tables: pass registered match/target data to match/target func... | Patrick McHardy | 1 | -2/+8 |
2006-03-20 | [NETFILTER]: xt_tables: add centralized error checking | Patrick McHardy | 1 | -4/+19 |
2006-01-20 | [NETFILTER]: Unbreak x-tables on x86. | David S. Miller | 1 | -1/+15 |
2006-01-19 | [NETFILTER] x_tables: Make XT_ALIGN align as strictly as necessary. | David S. Miller | 1 | -1/+1 |
2006-01-12 | [NETFILTER] x_tables: Abstraction layer for {ip,ip6,arp}_tables | Harald Welte | 1 | -0/+224 |