.. |
ipset
|
b24413180f
License cleanup: add SPDX GPL-2.0 license identifier to files with no license
|
7 years ago |
ipvs
|
b24413180f
License cleanup: add SPDX GPL-2.0 license identifier to files with no license
|
7 years ago |
Kconfig
|
6392c22603
netfilter: nf_tables: add fib expression to the netdev family
|
8 years ago |
Makefile
|
b24413180f
License cleanup: add SPDX GPL-2.0 license identifier to files with no license
|
7 years ago |
core.c
|
74585d4f84
netfilter: core: remove erroneous warn_on
|
8 years ago |
nf_conntrack_acct.c
|
23f671a1b5
netfilter: conntrack: mark extension structs as const
|
8 years ago |
nf_conntrack_amanda.c
|
d53e3fc390
netfilter: use nf_conntrack_helpers_register when possible
|
8 years ago |
nf_conntrack_broadcast.c
|
0b35f6031a
netfilter: Remove duplicated rcu_read_lock.
|
8 years ago |
nf_conntrack_core.c
|
aae3dbb477
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net-next
|
8 years ago |
nf_conntrack_ecache.c
|
23f671a1b5
netfilter: conntrack: mark extension structs as const
|
8 years ago |
nf_conntrack_expect.c
|
44d6e2f273
net: Replace NF_CT_ASSERT() with WARN_ON().
|
8 years ago |
nf_conntrack_extend.c
|
44d6e2f273
net: Replace NF_CT_ASSERT() with WARN_ON().
|
8 years ago |
nf_conntrack_ftp.c
|
9f0f3ebeda
netfilter: helpers: remove data_len usage for inkernel helpers
|
8 years ago |
nf_conntrack_h323_asn1.c
|
c2b9b4fee8
netfilter: nf_conntrack_h323: fix off-by-one in DecodeQ931
|
9 years ago |
nf_conntrack_h323_main.c
|
d53e3fc390
netfilter: use nf_conntrack_helpers_register when possible
|
8 years ago |
nf_conntrack_h323_types.c
|
905e3e8ec5
[NETFILTER]: nf_conntrack_h323: constify and annotate H.323 helper
|
17 years ago |
nf_conntrack_helper.c
|
ac7b848390
netfilter: expect: add and use nf_ct_expect_iterate helpers
|
8 years ago |
nf_conntrack_irc.c
|
9f0f3ebeda
netfilter: helpers: remove data_len usage for inkernel helpers
|
8 years ago |
nf_conntrack_l3proto_generic.c
|
91950833dd
netfilter: conntrack: place print_tuple in procfs part
|
8 years ago |
nf_conntrack_labels.c
|
23f671a1b5
netfilter: conntrack: mark extension structs as const
|
8 years ago |
nf_conntrack_netbios_ns.c
|
dcf67740f2
netfilter: helper: add build-time asserts for helper data size
|
8 years ago |
nf_conntrack_netlink.c
|
b3480fe059
netfilter: conntrack: make protocol tracker pointers const
|
8 years ago |
nf_conntrack_pptp.c
|
0b35f6031a
netfilter: Remove duplicated rcu_read_lock.
|
8 years ago |
nf_conntrack_proto.c
|
b3480fe059
netfilter: conntrack: make protocol tracker pointers const
|
8 years ago |
nf_conntrack_proto_dccp.c
|
d1c1e39de8
netfilter: remove unused hooknum arg from packet functions
|
8 years ago |
nf_conntrack_proto_generic.c
|
d1c1e39de8
netfilter: remove unused hooknum arg from packet functions
|
8 years ago |
nf_conntrack_proto_gre.c
|
d1c1e39de8
netfilter: remove unused hooknum arg from packet functions
|
8 years ago |
nf_conntrack_proto_sctp.c
|
d1c1e39de8
netfilter: remove unused hooknum arg from packet functions
|
8 years ago |
nf_conntrack_proto_tcp.c
|
d1c1e39de8
netfilter: remove unused hooknum arg from packet functions
|
8 years ago |
nf_conntrack_proto_udp.c
|
d1c1e39de8
netfilter: remove unused hooknum arg from packet functions
|
8 years ago |
nf_conntrack_sane.c
|
9f0f3ebeda
netfilter: helpers: remove data_len usage for inkernel helpers
|
8 years ago |
nf_conntrack_seqadj.c
|
23f671a1b5
netfilter: conntrack: mark extension structs as const
|
8 years ago |
nf_conntrack_sip.c
|
0b35f6031a
netfilter: Remove duplicated rcu_read_lock.
|
8 years ago |
nf_conntrack_snmp.c
|
5a406b0cdf
netfilter: nf_ct_snmp: add include file
|
12 years ago |
nf_conntrack_standalone.c
|
44d6e2f273
net: Replace NF_CT_ASSERT() with WARN_ON().
|
8 years ago |
nf_conntrack_tftp.c
|
9f0f3ebeda
netfilter: helpers: remove data_len usage for inkernel helpers
|
8 years ago |
nf_conntrack_timeout.c
|
23f671a1b5
netfilter: conntrack: mark extension structs as const
|
8 years ago |
nf_conntrack_timestamp.c
|
23f671a1b5
netfilter: conntrack: mark extension structs as const
|
8 years ago |
nf_dup_netdev.c
|
a32770b1e7
netfilter: dup: resolve warnings about missing prototypes
|
8 years ago |
nf_internals.h
|
b24413180f
License cleanup: add SPDX GPL-2.0 license identifier to files with no license
|
7 years ago |
nf_log.c
|
c83fa19603
netfilter: nf_log: don't call synchronize_rcu in nf_log_unset
|
8 years ago |
nf_log_common.c
|
673ab46f34
netfilter: nf_log: do not assume ethernet header in netdev family
|
8 years ago |
nf_log_netdev.c
|
673ab46f34
netfilter: nf_log: do not assume ethernet header in netdev family
|
8 years ago |
nf_nat_amanda.c
|
cba81cc4c9
netfilter: nat: nf_nat_mangle_{udp,tcp}_packet returns boolean
|
8 years ago |
nf_nat_core.c
|
b0ade85165
netfilter: nat: Do not use ARRAY_SIZE() on spinlocks to fix zero div
|
8 years ago |
nf_nat_ftp.c
|
b20ab9cc63
netfilter: nf_ct_helper: better logging for dropped packets
|
12 years ago |
nf_nat_helper.c
|
cba81cc4c9
netfilter: nat: nf_nat_mangle_{udp,tcp}_packet returns boolean
|
8 years ago |
nf_nat_irc.c
|
cba81cc4c9
netfilter: nat: nf_nat_mangle_{udp,tcp}_packet returns boolean
|
8 years ago |
nf_nat_proto_common.c
|
24de3d3775
netfilter: use IS_ENABLED() macro
|
11 years ago |
nf_nat_proto_dccp.c
|
0c4e966eaf
netfilter: built-in NAT support for DCCP
|
8 years ago |
nf_nat_proto_sctp.c
|
ae146d9b76
sctp: remove the typedef sctp_sctphdr_t
|
8 years ago |
nf_nat_proto_tcp.c
|
4b048d6d9d
net: Change pseudohdr argument of inet_proto_csum_replace* to be a bool
|
10 years ago |
nf_nat_proto_udp.c
|
9700ba805b
netfilter: nat: merge udp and udplite helpers
|
8 years ago |
nf_nat_proto_unknown.c
|
c7232c9979
netfilter: add protocol independent NAT core
|
13 years ago |
nf_nat_redirect.c
|
44d6e2f273
net: Replace NF_CT_ASSERT() with WARN_ON().
|
8 years ago |
nf_nat_sip.c
|
18082746a2
netfilter: replace strnicmp with strncasecmp
|
11 years ago |
nf_nat_tftp.c
|
b20ab9cc63
netfilter: nf_ct_helper: better logging for dropped packets
|
12 years ago |
nf_queue.c
|
960632ece6
netfilter: convert hook list to an array
|
8 years ago |
nf_sockopt.c
|
b24413180f
License cleanup: add SPDX GPL-2.0 license identifier to files with no license
|
7 years ago |
nf_synproxy_core.c
|
9a568de481
tcp: switch TCP TS option (RFC 7323) to 1ms clock
|
8 years ago |
nf_tables_api.c
|
5f9bfe0ef6
netfilter: nf_tables: do not dump chain counters if not enabled
|
8 years ago |
nf_tables_core.c
|
549d2d41c1
netfilter: constify nf_loginfo structures
|
8 years ago |
nf_tables_inet.c
|
23d07508d2
netfilter: Add the missed return value check of nft_register_chain_type
|
9 years ago |
nf_tables_netdev.c
|
f323d95469
netfilter: nf_tables: add nft_is_base_chain() helper
|
8 years ago |
nf_tables_trace.c
|
b7263e071a
netfilter: nf_tables: Allow chain name of up to 255 chars
|
8 years ago |
nfnetlink.c
|
f55ce7b024
netfilter: nfnetlink: Improve input length sanitization in nfnetlink_rcv
|
8 years ago |
nfnetlink_acct.c
|
04ba724b65
netfilter: nfnetlink: extended ACK reporting
|
8 years ago |
nfnetlink_cthelper.c
|
04ba724b65
netfilter: nfnetlink: extended ACK reporting
|
8 years ago |
nfnetlink_cttimeout.c
|
b3480fe059
netfilter: conntrack: make protocol tracker pointers const
|
8 years ago |
nfnetlink_log.c
|
549d2d41c1
netfilter: constify nf_loginfo structures
|
8 years ago |
nfnetlink_queue.c
|
5da773a3e8
netfilter: nfnetlink_queue: don't queue dying conntracks to userspace
|
8 years ago |
nft_bitwise.c
|
591054469b
netfilter: nf_tables: revisit chain/object refcounting from elements
|
8 years ago |
nft_byteorder.c
|
4e24877e61
netfilter: nf_tables: simplify the basic expressions' init routine
|
8 years ago |
nft_cmp.c
|
591054469b
netfilter: nf_tables: revisit chain/object refcounting from elements
|
8 years ago |
nft_compat.c
|
f7fb77fc12
netfilter: nft_compat: check extension hook mask only if set
|
8 years ago |
nft_counter.c
|
dfc46034b5
netfilter: nf_tables: add select_ops for stateful objects
|
8 years ago |
nft_ct.c
|
dfc46034b5
netfilter: nf_tables: add select_ops for stateful objects
|
8 years ago |
nft_dup_netdev.c
|
502061f81d
netfilter: nf_tables: add packet duplication to the netdev family
|
9 years ago |
nft_dynset.c
|
4d89ac2dd5
Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf
|
8 years ago |
nft_exthdr.c
|
5fd02ebe65
netfilter: fix a few (harmless) sparse warnings
|
8 years ago |
nft_fib.c
|
055c4b34b9
netfilter: nft_fib: Support existence check
|
8 years ago |
nft_fib_inet.c
|
0e5a1c7eb3
netfilter: nf_tables: use hook state from xt_action_param structure
|
9 years ago |
nft_fib_netdev.c
|
6392c22603
netfilter: nf_tables: add fib expression to the netdev family
|
8 years ago |
nft_fwd_netdev.c
|
3bf3276119
netfilter: add and use nf_fwd_netdev_egress
|
8 years ago |
nft_hash.c
|
a01aa920b8
Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-next
|
8 years ago |
nft_immediate.c
|
591054469b
netfilter: nf_tables: revisit chain/object refcounting from elements
|
8 years ago |
nft_limit.c
|
a691205571
netfilter: nft_limit: add stateful object type
|
8 years ago |
nft_log.c
|
5ce6b04ce9
netfilter: nft_log: restrict the log prefix length to 127
|
8 years ago |
nft_lookup.c
|
c7a72e3fdb
netfilter: nf_tables: add nft_set_lookup()
|
8 years ago |
nft_masq.c
|
c56e3956c1
netfilter: nf_tables: validate the expr explicitly after init successfully
|
8 years ago |
nft_meta.c
|
d4ef383541
netfilter: Remove exceptional & on function name
|
8 years ago |
nft_nat.c
|
16ae1f2236
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
|
8 years ago |
nft_numgen.c
|
d4ef383541
netfilter: Remove exceptional & on function name
|
8 years ago |
nft_objref.c
|
dfc46034b5
netfilter: nf_tables: add select_ops for stateful objects
|
8 years ago |
nft_payload.c
|
5fd02ebe65
netfilter: fix a few (harmless) sparse warnings
|
8 years ago |
nft_queue.c
|
d4ef383541
netfilter: Remove exceptional & on function name
|
8 years ago |
nft_quota.c
|
dfc46034b5
netfilter: nf_tables: add select_ops for stateful objects
|
8 years ago |
nft_range.c
|
591054469b
netfilter: nf_tables: revisit chain/object refcounting from elements
|
8 years ago |
nft_redir.c
|
c56e3956c1
netfilter: nf_tables: validate the expr explicitly after init successfully
|
8 years ago |
nft_reject.c
|
c56e3956c1
netfilter: nf_tables: validate the expr explicitly after init successfully
|
8 years ago |
nft_reject_inet.c
|
c56e3956c1
netfilter: nf_tables: validate the expr explicitly after init successfully
|
8 years ago |
nft_rt.c
|
1aff64715e
netfilter: rt: account for tcp header size too
|
8 years ago |
nft_set_bitmap.c
|
347b408d59
netfilter: nf_tables: pass set description to ->privsize
|
8 years ago |
nft_set_hash.c
|
0414c78f14
netfilter: nft_set_hash: disable fast_ops for 2-len keys
|
8 years ago |
nft_set_rbtree.c
|
9b7e26aee7
netfilter: nft_set_rbtree: use seqcount to avoid lock in most cases
|
8 years ago |
x_tables.c
|
e466af75c0
netfilter: x_tables: avoid stack-out-of-bounds read in xt_copy_counters_from_user
|
8 years ago |
xt_AUDIT.c
|
2173c519d5
audit: normalize NETFILTER_PKT
|
8 years ago |
xt_CHECKSUM.c
|
edf0e1fb0d
netfilter: add CHECKSUM target
|
15 years ago |
xt_CLASSIFY.c
|
9811600f7c
netfilter: xt_CLASSIFY: add ARP support, allow CLASSIFY target on any table
|
15 years ago |
xt_CONNSECMARK.c
|
ecb2421b5d
netfilter: add and use nf_ct_netns_get/put
|
8 years ago |
xt_CT.c
|
b3480fe059
netfilter: conntrack: make protocol tracker pointers const
|
8 years ago |
xt_DSCP.c
|
5676864431
netfilter: fix various sparse warnings
|
11 years ago |
xt_HL.c
|
181b1e9ce1
netfilter: Reduce switch/case indent
|
14 years ago |
xt_HMARK.c
|
ab8bc7ed86
netfilter: remove nf_ct_is_untracked
|
8 years ago |
xt_IDLETIMER.c
|
cec5913c15
netfilter: IDLETIMER: fix race condition when destroy the target
|
9 years ago |
xt_LED.c
|
d247b6ab3c
Merge git://git.kernel.org/pub/scm/linux/kernel/git/davem/net
|
11 years ago |
xt_LOG.c
|
613dbd9572
netfilter: x_tables: move hook state into xt_action_param structure
|
9 years ago |
xt_NETMAP.c
|
44d6e2f273
net: Replace NF_CT_ASSERT() with WARN_ON().
|
8 years ago |
xt_NFLOG.c
|
613dbd9572
netfilter: x_tables: move hook state into xt_action_param structure
|
9 years ago |
xt_NFQUEUE.c
|
613dbd9572
netfilter: x_tables: move hook state into xt_action_param structure
|
9 years ago |
xt_RATEEST.c
|
ec23189049
xtables: extend matches and targets with .usersize
|
8 years ago |
xt_REDIRECT.c
|
a357b3f80b
netfilter: nat: add dependencies on conntrack module
|
8 years ago |
xt_SECMARK.c
|
2606fd1fa5
secmark: make secmark object handling generic
|
15 years ago |
xt_TCPMSS.c
|
0b35f6031a
netfilter: Remove duplicated rcu_read_lock.
|
8 years ago |
xt_TCPOPTSTRIP.c
|
4b048d6d9d
net: Change pseudohdr argument of inet_proto_csum_replace* to be a bool
|
10 years ago |
xt_TEE.c
|
ec23189049
xtables: extend matches and targets with .usersize
|
8 years ago |
xt_TPROXY.c
|
b63f6044d8
Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-next
|
8 years ago |
xt_TRACE.c
|
36f959c491
netfilter: xt_TRACE: add explicitly nf_logger_find_get call
|
9 years ago |
xt_addrtype.c
|
0b35f6031a
netfilter: Remove duplicated rcu_read_lock.
|
8 years ago |
xt_bpf.c
|
98589a0998
netfilter: xt_bpf: Fix XT_BPF_MODE_FD_PINNED mode of 'xt_bpf_info_v1'
|
8 years ago |
xt_cgroup.c
|
ec23189049
xtables: extend matches and targets with .usersize
|
8 years ago |
xt_cluster.c
|
ab8bc7ed86
netfilter: remove nf_ct_is_untracked
|
8 years ago |
xt_comment.c
|
62fc805108
netfilter: xtables: deconstify struct xt_action_param for matches
|
15 years ago |
xt_connbytes.c
|
ecb2421b5d
netfilter: add and use nf_ct_netns_get/put
|
8 years ago |
xt_connlabel.c
|
ab8bc7ed86
netfilter: remove nf_ct_is_untracked
|
8 years ago |
xt_connlimit.c
|
a2acc54340
netfilter: connlimit: merge root4 and root6.
|
8 years ago |
xt_connmark.c
|
ab8bc7ed86
netfilter: remove nf_ct_is_untracked
|
8 years ago |
xt_conntrack.c
|
cc41c84b7e
netfilter: kill the fake untracked conntrack objects
|
8 years ago |
xt_cpu.c
|
f1e231a356
netfilter: xtables: add missing aliases for autoloading via iptables
|
14 years ago |
xt_dccp.c
|
b4ba26119b
netfilter: xtables: change hotdrop pointer to direct modification
|
15 years ago |
xt_devgroup.c
|
613dbd9572
netfilter: x_tables: move hook state into xt_action_param structure
|
9 years ago |
xt_dscp.c
|
613dbd9572
netfilter: x_tables: move hook state into xt_action_param structure
|
9 years ago |
xt_ecn.c
|
42c344a3bc
netfilter: xtables: collapse conditions in xt_ecn
|
13 years ago |
xt_esp.c
|
b4ba26119b
netfilter: xtables: change hotdrop pointer to direct modification
|
15 years ago |
xt_hashlimit.c
|
90c4ae4e2c
netfilter: xt_hashlimit: fix build error caused by 64bit division
|
8 years ago |
xt_helper.c
|
ecb2421b5d
netfilter: add and use nf_ct_netns_get/put
|
8 years ago |
xt_hl.c
|
181b1e9ce1
netfilter: Reduce switch/case indent
|
14 years ago |
xt_ipcomp.c
|
f434ed0a00
netfilter: xt_ipcomp: add "ip[6]t_ipcomp" module alias name
|
9 years ago |
xt_iprange.c
|
bd4a6974cc
Merge branch 'master' of master.kernel.org:/pub/scm/linux/kernel/git/davem/net-2.6
|
14 years ago |
xt_ipvs.c
|
ab8bc7ed86
netfilter: remove nf_ct_is_untracked
|
8 years ago |
xt_l2tp.c
|
74f77a6b2b
netfilter: introduce l2tp match extension
|
11 years ago |
xt_length.c
|
62fc805108
netfilter: xtables: deconstify struct xt_action_param for matches
|
15 years ago |
xt_limit.c
|
2cb4bbd75b
netfilter: limit: use per-rule spinlock to improve the scalability
|
8 years ago |
xt_mac.c
|
8561cf9978
netfilter: Convert compare_ether_addr to ether_addr_equal
|
13 years ago |
xt_mark.c
|
12b7ed29bd
netfilter: xt_MARK: Add ARP support
|
10 years ago |
xt_multiport.c
|
1ed9887ee3
netfilter: xt_multiport: Fix wrong unmatch result with multiple ports
|
8 years ago |
xt_nat.c
|
44d6e2f273
net: Replace NF_CT_ASSERT() with WARN_ON().
|
8 years ago |
xt_nfacct.c
|
613dbd9572
netfilter: x_tables: move hook state into xt_action_param structure
|
9 years ago |
xt_osf.c
|
0b35f6031a
netfilter: Remove duplicated rcu_read_lock.
|
8 years ago |
xt_owner.c
|
5b825c3af1
sched/headers: Prepare to remove <linux/cred.h> inclusion from <linux/sched.h>
|
8 years ago |
xt_physdev.c
|
ceee4091d6
netfilter: physdev: add missed blank
|
9 years ago |
xt_pkttype.c
|
9a6d876262
netfilter: pkttype: unnecessary to check ipv6 multicast address
|
8 years ago |
xt_policy.c
|
613dbd9572
netfilter: x_tables: move hook state into xt_action_param structure
|
9 years ago |
xt_quota.c
|
ec23189049
xtables: extend matches and targets with .usersize
|
8 years ago |
xt_rateest.c
|
ec23189049
xtables: extend matches and targets with .usersize
|
8 years ago |
xt_realm.c
|
62fc805108
netfilter: xtables: deconstify struct xt_action_param for matches
|
15 years ago |
xt_recent.c
|
3754b87a4e
netfilter: remove unused variable
|
8 years ago |
xt_repldata.h
|
b24413180f
License cleanup: add SPDX GPL-2.0 license identifier to files with no license
|
7 years ago |
xt_sctp.c
|
922dbc5be2
sctp: remove the typedef sctp_chunkhdr_t
|
8 years ago |
xt_set.c
|
bec810d973
netfilter: ipset: Improve skbinfo get/init helpers
|
8 years ago |
xt_socket.c
|
89fcbb564f
netfilter: xt_socket: Restore mark from full sockets only
|
8 years ago |
xt_state.c
|
cc41c84b7e
netfilter: kill the fake untracked conntrack objects
|
8 years ago |
xt_statistic.c
|
63862b5bef
net: replace macros net_random and net_srandom with direct calls to prandom
|
11 years ago |
xt_string.c
|
ec23189049
xtables: extend matches and targets with .usersize
|
8 years ago |
xt_tcpmss.c
|
b4ba26119b
netfilter: xtables: change hotdrop pointer to direct modification
|
15 years ago |
xt_tcpudp.c
|
c37a2dfa67
netfilter: Convert FWINV<[foo]> macros and uses to NF_INVF
|
9 years ago |
xt_time.c
|
2456e85535
ktime: Get rid of the union
|
8 years ago |
xt_u32.c
|
62fc805108
netfilter: xtables: deconstify struct xt_action_param for matches
|
15 years ago |