Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | firewall: insert SNAT and DNAT rules according to the order of the ↵ | Jo-Philipp Wich | 2010-10-08 | 1 | -1/+4 |
| | | | | | | configuration file (#8052) SVN-Revision: 23318 | ||||
* | fireall: - support negations for src_ip, dest_ip, src_dip options in rules ↵ | Jo-Philipp Wich | 2010-09-28 | 1 | -8/+10 |
| | | | | | | and redirects - add NOTRACK target to rule sections, allows to define fine grained notrack rules SVN-Revision: 23141 | ||||
* | firewall: make invalid redirects and duplicate zones non-fatal, print a ↵ | Jo-Philipp Wich | 2010-09-16 | 1 | -3/+6 |
| | | | | | | notice and discard them SVN-Revision: 23080 | ||||
* | firewall: - simplify masquerade rule setup - remove various subshell ↵ | Jo-Philipp Wich | 2010-09-11 | 1 | -30/+54 |
| | | | | | | invocations - speedup fw() by not relying on xargs and pipes - rework SNAT support - attach to dest zone, use src_dip/src_dport as snat source SVN-Revision: 23024 | ||||
* | firewall: - fix possible endless loop when the family option is used for ↵ | Jo-Philipp Wich | 2010-09-05 | 1 | -3/+5 |
| | | | | | | forwardings - only generate forwarding rules in SNAT redirect sections if src_dip is specified SVN-Revision: 22938 | ||||
* | firewall: introduce SNAT support for redirect sections | Jo-Philipp Wich | 2010-09-05 | 1 | -2/+14 |
| | | | | SVN-Revision: 22937 | ||||
* | firewall: allow redirecting only destination port (#7197) | Jo-Philipp Wich | 2010-07-16 | 1 | -2/+3 |
| | | | | SVN-Revision: 22227 | ||||
* | firewall: - notrack support was broken in multiple ways, fix it - also ↵ | Jo-Philipp Wich | 2010-07-15 | 1 | -0/+3 |
| | | | | | | consider a zone conntracked if any redirect references it (#7196) SVN-Revision: 22215 | ||||
* | firewall: fix support for netranges in redirect and rule sections | Jo-Philipp Wich | 2010-05-30 | 1 | -3/+3 |
| | | | | SVN-Revision: 21640 | ||||
* | firewall: - fix ip6tables rules when icmp_type option is set - add "family" ↵ | Jo-Philipp Wich | 2010-05-19 | 1 | -2/+5 |
| | | | | | | option to zones, forwardings, redirects and rules to selectively apply rules to iptables and/or ip6tables SVN-Revision: 21508 | ||||
* | firewall: - replace uci firewall with a modular dual stack implementation ↵ | Jo-Philipp Wich | 2010-05-01 | 1 | -0/+61 |
developed by Malte S. Stretz - bump version to 2 SVN-Revision: 21286 |