From: Pablo Neira Ayuso
Date: Wed, 15 Mar 2017 18:01:02 +0100
> The following patchset contains Netfilter fixes for your net tree, a
> rather large batch of fixes targeted to nf_tables, conntrack and bridge
> netfilter. More specifically, they are:
>
> 1) Don't track fragmented packets if the so
Hi David,
The following patchset contains Netfilter fixes for your net tree, a
rather large batch of fixes targeted to nf_tables, conntrack and bridge
netfilter. More specifically, they are:
1) Don't track fragmented packets if the socket option IP_NODEFRAG is set.
From Florian Westphal.
2) S
On Fri, 13 Nov 2015, Josh Boyer wrote:
> On Wed, Nov 11, 2015 at 12:33 PM, Pablo Neira Ayuso
> wrote:
> > Jozsef Kadlecsik (3):
> > netfilter: ipset: Fix extension alignment
> > netfilter: ipset: Fix hash:* type expiration
> > netfilter: ipset: Fix hash type expire: release emp
On Wed, Nov 11, 2015 at 12:33 PM, Pablo Neira Ayuso wrote:
> Jozsef Kadlecsik (3):
> netfilter: ipset: Fix extension alignment
> netfilter: ipset: Fix hash:* type expiration
> netfilter: ipset: Fix hash type expire: release empty hash bucket block
Should these three go to stable
From: Pablo Neira Ayuso
Date: Wed, 11 Nov 2015 18:33:33 +0100
> The following patchset contains Netfilter fixes for your net tree. This
> large batch that includes fixes for ipset, netfilter ingress, nf_tables
> dynamic set instantiation and a longstanding Kconfig dependency problem.
> More speci
Hi David,
The following patchset contains Netfilter fixes for your net tree. This
large batch that includes fixes for ipset, netfilter ingress, nf_tables
dynamic set instantiation and a longstanding Kconfig dependency problem.
More specifically, they are:
1) Add missing check for empty hook list