Merge git://git.kernel.org/pub/scm/linux/kernel/git/pablo/nf-next
Pablo Neira Ayuso says:
====================
Netfilter updates for net-next
The following patches contains Netfilter updates for net-next:
1) .br_defrag indirection depends on CONFIG_NF_DEFRAG_IPV6, from wenxu.
2) Remove unnecessary memset() in ipset, from Florent Fourcot.
3) Merge control plane addition and deletion in ipset, also from Florent.
4) A few missing check for nla_parse() in ipset, from Aditya Pakki
and Jozsef Kadlecsik.
5) Incorrect cleanup in error path of xt_set version 3, from Jozsef.
6) Memory accounting problems when resizing in ipset, from Stefano Brivio.
7) Jozsef updates his email to @netfilter.org, this batch comes with a
conflict resolution with recent SPDX header updates.
8) Add to create custom conntrack expectations via nftables, from
Stephane Veyret.
9) A lookup optimization for conntrack, from Florian Westphal.
10) Check for supported flags in xt_owner.
11) Support for pernet sysctl in br_netfilter, patches
from Christian Brauner.
12) Patches to move common synproxy infrastructure to nf_synproxy.c,
to prepare the synproxy support for nf_tables, patches from
Fernando Fernandez Mancera.
13) Support to restore expiration time in set element, from Laura Garcia.
14) Fix recent rewrite of netfilter IPv6 to avoid indirections
when CONFIG_IPV6 is unset, from Arnd Bergmann.
15) Always reset vlan tag on skbuff fraglist when refragmenting in
bridge conntrack, from wenxu.
16) Support to match IPv4 options in nf_tables, from Stephen Suryaputra.
====================
Signed-off-by:
David S. Miller <davem@davemloft.net>
Showing
- CREDITS 1 addition, 1 deletionCREDITS
- MAINTAINERS 1 addition, 1 deletionMAINTAINERS
- include/linux/jhash.h 1 addition, 1 deletioninclude/linux/jhash.h
- include/linux/netfilter/ipset/ip_set.h 1 addition, 1 deletioninclude/linux/netfilter/ipset/ip_set.h
- include/linux/netfilter/ipset/ip_set_counter.h 1 addition, 2 deletionsinclude/linux/netfilter/ipset/ip_set_counter.h
- include/linux/netfilter/ipset/ip_set_skbinfo.h 1 addition, 2 deletionsinclude/linux/netfilter/ipset/ip_set_skbinfo.h
- include/linux/netfilter/ipset/ip_set_timeout.h 1 addition, 2 deletionsinclude/linux/netfilter/ipset/ip_set_timeout.h
- include/linux/netfilter_ipv6.h 50 additions, 4 deletionsinclude/linux/netfilter_ipv6.h
- include/net/netfilter/br_netfilter.h 2 additions, 1 deletioninclude/net/netfilter/br_netfilter.h
- include/net/netfilter/nf_conntrack.h 3 additions, 4 deletionsinclude/net/netfilter/nf_conntrack.h
- include/net/netfilter/nf_conntrack_synproxy.h 2 additions, 11 deletionsinclude/net/netfilter/nf_conntrack_synproxy.h
- include/net/netfilter/nf_synproxy.h 44 additions, 0 deletionsinclude/net/netfilter/nf_synproxy.h
- include/net/netfilter/nf_tables.h 1 addition, 1 deletioninclude/net/netfilter/nf_tables.h
- include/uapi/linux/netfilter/ipset/ip_set.h 1 addition, 1 deletioninclude/uapi/linux/netfilter/ipset/ip_set.h
- include/uapi/linux/netfilter/nf_SYNPROXY.h 19 additions, 0 deletionsinclude/uapi/linux/netfilter/nf_SYNPROXY.h
- include/uapi/linux/netfilter/nf_tables.h 15 additions, 1 deletioninclude/uapi/linux/netfilter/nf_tables.h
- include/uapi/linux/netfilter/xt_SYNPROXY.h 7 additions, 11 deletionsinclude/uapi/linux/netfilter/xt_SYNPROXY.h
- include/uapi/linux/netfilter/xt_owner.h 5 additions, 0 deletionsinclude/uapi/linux/netfilter/xt_owner.h
- net/bridge/br_netfilter_hooks.c 161 additions, 86 deletionsnet/bridge/br_netfilter_hooks.c
- net/bridge/br_netfilter_ipv6.c 1 addition, 1 deletionnet/bridge/br_netfilter_ipv6.c
Loading
Please register or sign in to comment