2005-09-19 16:17:09 +02:00
|
|
|
Changes in 2.5.7
|
|
|
|
|
|
|
|
1) Fix ADMINISABSENTMINDED=Yes vs. entries in /etc/shorewall/routestopped.
|
|
|
|
|
2005-09-30 18:54:24 +02:00
|
|
|
2) Fix traffic shaping and "shorewall refresh"
|
|
|
|
|
|
|
|
3) Add capabilities report to "shorewall dump".
|
|
|
|
|
2005-09-30 19:16:22 +02:00
|
|
|
4) Rename 'plain' to 'ipv4'
|
|
|
|
|
2005-10-01 17:55:41 +02:00
|
|
|
5) Deimplement NEWNOTSYN
|
|
|
|
|
2005-10-02 18:28:24 +02:00
|
|
|
6) Fix logging IPP2P rules.
|
|
|
|
|
2005-09-13 19:13:35 +02:00
|
|
|
Changes in 2.5.6
|
|
|
|
|
|
|
|
1) Finish install/fallback cleanup.
|
|
|
|
|
2005-09-15 01:01:13 +02:00
|
|
|
2) Fix startup failure.
|
|
|
|
|
|
|
|
3) Add "-n" option.
|
|
|
|
|
2005-09-05 22:07:00 +02:00
|
|
|
Changes in 2.5.5
|
|
|
|
|
|
|
|
1) Zone file alchemy attempted.
|
|
|
|
|
|
|
|
2) Fix install.sh re: Makefile
|
|
|
|
|
2005-09-08 22:57:29 +02:00
|
|
|
3) Fix error handling.
|
|
|
|
|
2005-09-09 00:30:32 +02:00
|
|
|
4) Add SHOREWALL_LIBRARY function.
|
|
|
|
|
2005-08-30 00:51:49 +02:00
|
|
|
Changes in 2.5.4
|
|
|
|
|
|
|
|
1) Allow TAG to be used as a general parameter mechanism [hack].
|
|
|
|
|
|
|
|
2) Fix some ghastly bugs in macros.
|
2005-08-16 20:54:11 +02:00
|
|
|
|
2005-08-30 17:54:29 +02:00
|
|
|
3) "shorewall check" now checks the masq file.
|
|
|
|
|
2005-08-30 19:42:21 +02:00
|
|
|
4) "shorewall check" now checks the proxyarp file.
|
|
|
|
|
2005-08-30 22:29:42 +02:00
|
|
|
5) "shorewall check" now checks the nat file.
|
|
|
|
|
|
|
|
6) "shorewall check" now checks the providers file.
|
|
|
|
|
2005-08-31 22:48:22 +02:00
|
|
|
7) Merge 'tc4shorewall'
|
|
|
|
|
2005-09-01 17:16:11 +02:00
|
|
|
8) Modify tc4shorewall so that it plays well with Shorewall
|
|
|
|
save/restore.
|
|
|
|
|
2005-08-16 20:54:11 +02:00
|
|
|
Changes in 2.5.3
|
|
|
|
|
|
|
|
1) Allow exclusion lists in /etc/shorewall/tcrules.
|
|
|
|
|
2005-08-16 23:57:43 +02:00
|
|
|
2) Added 'openvpnserver' and 'openvpnclient' tunnel types.
|
|
|
|
|
2005-08-17 19:52:32 +02:00
|
|
|
3) Set COMMAND=restore in restore-base.
|
|
|
|
|
2005-08-18 22:18:08 +02:00
|
|
|
4) Allow exclusion lists in actions.
|
2005-08-17 23:00:33 +02:00
|
|
|
|
2005-08-18 23:39:30 +02:00
|
|
|
5) Make intra-zone policies more rational.
|
|
|
|
|
2005-08-25 00:39:19 +02:00
|
|
|
6) Clear the raw table on stop and [re]start
|
|
|
|
|
2005-08-26 21:55:05 +02:00
|
|
|
7) Section the rules file.
|
|
|
|
|
2005-08-27 16:50:33 +02:00
|
|
|
8) Fixed tunnels/rules interaction problems.
|
|
|
|
|
2005-08-29 22:32:16 +02:00
|
|
|
9) Provide hack for passing arguments to action extension scripts.
|
|
|
|
|
2005-08-16 20:54:11 +02:00
|
|
|
Changes in 2.5.2
|
|
|
|
|
2005-08-30 00:51:49 +02:00
|
|
|
1) Allow port lists in /etc/shorewall/accounting.
|
2005-08-16 20:54:11 +02:00
|
|
|
|
|
|
|
2) Fix PKTTYPE=No and packet type match capability reporting.
|
|
|
|
|
|
|
|
3) Add FASTACCEPT option.
|
|
|
|
|
|
|
|
4) Generate error if norfc1918 is specified on an interface with an RFC
|
|
|
|
1918 IP address.
|
|
|
|
|
|
|
|
5) Implement exclusion lists in /etc/shorewall/rules.
|
|
|
|
|
2005-07-27 22:30:16 +02:00
|
|
|
Changes in 2.5.1
|
|
|
|
|
|
|
|
1) Make "shorewall add" work with 'ipsec' in hosts file.
|
|
|
|
|
|
|
|
2) Remove dependence on 'which'
|
|
|
|
|
2005-07-28 16:37:56 +02:00
|
|
|
3) Rename "status" to "dump" and add real status command.
|
|
|
|
|
|
|
|
4) Fix Makefile (compare to restore-base rather than restarted).
|
|
|
|
|
2005-08-05 16:13:45 +02:00
|
|
|
5) Add "all+"
|
|
|
|
|
|
|
|
6) Don't generate redundant ACCEPT rules for DNAT/REDIRECT/SAME
|
|
|
|
|
2005-08-11 21:53:07 +02:00
|
|
|
7) Add FASTACCEPT option in shorewall.conf.
|
|
|
|
|
2005-08-14 18:45:48 +02:00
|
|
|
8) Generate error for 'norfc1918' on an interface with an RFC 1918 IP
|
|
|
|
address.
|
|
|
|
|
2005-08-15 19:35:45 +02:00
|
|
|
9) Finally implement exclude lists in rules.
|
|
|
|
|
2005-07-27 22:30:16 +02:00
|
|
|
Changes in 2.5.1ex/2.5.0
|
2003-05-22 22:37:24 +02:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
1) Clean up handling of zones
|
2003-06-18 20:37:37 +02:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
2) Make the removal of the ipsec file upward compatible.
|
2004-01-24 00:48:30 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
3) Improve CONTINUE policy handling.
|
2004-01-24 00:48:30 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
4) Implement arp_ignore support.
|
2004-01-24 00:48:30 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
Changes in 2.5.0ex
|
2004-01-27 23:33:32 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
1) Make warning and error messages easier to find by using
|
|
|
|
capitalization.
|
2004-01-27 23:33:32 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
2) Remove /etc/shorewall/ipsec and merge it's function with
|
|
|
|
/etc/shorewall/zones.
|
2004-01-28 01:52:03 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
3) Apply small fix to the above patch.
|
2004-01-28 01:52:03 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
4) Remove dynamic zone support.
|
2004-01-29 20:11:51 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
5) Add "established policy" support.
|
2004-02-05 21:13:24 +01:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
6) Add CRITICALHOSTS support.
|
2005-07-09 06:45:32 +02:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
7) Remove 'bogon' stuff.
|
2005-07-09 06:45:32 +02:00
|
|
|
|
2005-07-26 01:08:09 +02:00
|
|
|
8) Implement Macros.
|