teastep
|
ade958dd51
|
Add undocumented LOGMARK log level
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9851 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-12 15:22:19 +00:00 |
|
teastep
|
347090da6e
|
Correct netmask generation in tcfilters
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9850 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-12 15:22:00 +00:00 |
|
teastep
|
97e61965c0
|
Fix another inversion case
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9846 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-11 21:48:34 +00:00 |
|
teastep
|
de037034a5
|
Bump version to 4.3.9
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9845 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-11 15:31:25 +00:00 |
|
teastep
|
9bfc7b6d99
|
Tiny optimization.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9844 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-11 15:28:50 +00:00 |
|
teastep
|
c39fcc4db7
|
Optimization of log rule code
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9843 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-10 20:36:22 +00:00 |
|
teastep
|
b734d3af31
|
Fix subtle bug introduced in last commit
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9842 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-10 20:36:09 +00:00 |
|
teastep
|
20cfd0033c
|
Fix a 4.3 bug in expand_rule().
Don't repeat matches on target rule when log chain is used.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9841 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-10 19:47:39 +00:00 |
|
teastep
|
28e84a6aba
|
Break up long port lists in jump to logging chain
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9840 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-10 16:31:04 +00:00 |
|
teastep
|
e0040f4011
|
Small optimizations in expand_rule()
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9837 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-10 16:16:25 +00:00 |
|
teastep
|
ff014f328b
|
Correct usage text
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9836 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-10 16:15:36 +00:00 |
|
teastep
|
8278203e03
|
Remove one argument from expand_rule()
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9835 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-09 22:21:48 +00:00 |
|
teastep
|
f20013898e
|
Don't use -g when the target might not be terminating
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9834 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-09 20:18:11 +00:00 |
|
teastep
|
ae169f00a7
|
Implement rules that also log as a separate chain. Preserve original target in logging rules
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9833 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-09 18:45:21 +00:00 |
|
teastep
|
c8b48a9bbd
|
Update man pages to allow interface name in DEST column of notrack file.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9832 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-08 22:45:51 +00:00 |
|
teastep
|
7d2b410904
|
Correct rule generation when an interface is specified as the destination of a PREROUTING rule.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9831 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-08 03:37:15 +00:00 |
|
teastep
|
28b6fd8033
|
Simplify hashlimit match code
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9830 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 18:15:51 +00:00 |
|
teastep
|
fe16576258
|
Document the fact that ":<burst>: is optional in LIMIT:BURST
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9829 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 18:15:38 +00:00 |
|
teastep
|
36e0c85f5f
|
Require the Hashlimit Match capability for per-IP rate limiting
Use the current key words in the generated hashlimit match
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9828 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 17:36:23 +00:00 |
|
teastep
|
cd1f5d3c83
|
Document the hashlimit feature
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9827 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 17:35:06 +00:00 |
|
teastep
|
c545e65cea
|
First part of 'hashlimit' implemenation
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9826 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 03:23:01 +00:00 |
|
teastep
|
b1e9453c62
|
The other half of the re-implementation of 'enable/disable_object'
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9825 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 03:22:49 +00:00 |
|
teastep
|
0744df13d6
|
Reimplement object_enable/disable
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9824 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 03:22:30 +00:00 |
|
teastep
|
b6053d8577
|
Fix second bug regarding ADD_IP_ALIASES=Yes
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9823 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 03:22:16 +00:00 |
|
teastep
|
eb533d8b00
|
Make SHOREWALL_COMPILER=perl explicit in shorewall.conf
Send SHOREWALL_COMPILER errors to STDERR
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9822 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 03:22:02 +00:00 |
|
teastep
|
010680d207
|
Belatedly update News for Shorewall 4.2.7
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9821 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 03:21:49 +00:00 |
|
teastep
|
749d1c837f
|
Update Documentation Index for "Fool's Firewall" Article
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9820 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-07 03:21:33 +00:00 |
|
teastep
|
b6091361cb
|
Add "The Fool's Firewall" Article
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9814 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 21:31:09 +00:00 |
|
teastep
|
2fd359c459
|
More "Fools Firewall" changes/additions
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9813 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 20:33:06 +00:00 |
|
teastep
|
69bde82800
|
Add another "Fool's Firewall" Graphic
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9812 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 20:32:30 +00:00 |
|
teastep
|
edc9509e1f
|
Add "Fool's Firewall" graphic
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9811 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 19:43:56 +00:00 |
|
teastep
|
7ce546bc80
|
More minor doc updates.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9810 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 18:31:47 +00:00 |
|
teastep
|
738e33f7f5
|
More Build doc fixes
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9809 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 18:31:26 +00:00 |
|
teastep
|
d56e907150
|
A couple of additional changes for Git and the Build doc.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9808 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 18:31:10 +00:00 |
|
teastep
|
a5f37c860f
|
Update Build document to reflect migration to Git
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9807 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 17:44:06 +00:00 |
|
teastep
|
9d03fe20e0
|
Minor documentation updates
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9806 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 17:22:29 +00:00 |
|
teastep
|
4b419186bc
|
Add note about documentation to release highlights
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9805 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 17:22:17 +00:00 |
|
teastep
|
52b0b4e602
|
More removal of SAVE_IPSETS=Yes logic
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9804 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 17:22:06 +00:00 |
|
teastep
|
455cf4ab0b
|
Update buildshorewall to reflect move of Samples to branches/4.2
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9803 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 17:21:54 +00:00 |
|
teastep
|
50cbe499e2
|
Add article about Dynamic Zones
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9802 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 17:21:41 +00:00 |
|
teastep
|
5b48b00bcc
|
Remove remaining potential point of confusion in Squid documentation.
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9801 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 15:48:50 +00:00 |
|
teastep
|
844bb448c7
|
Fix inversion rules (omitted hunk)
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9797 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 15:09:17 +00:00 |
|
teastep
|
e2c5ad441a
|
Generate inversion that satisfies iptables 1.4.3.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9796 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 15:09:04 +00:00 |
|
teastep
|
07c579562e
|
Explain how to exclude certain hosts from transparent proxy
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9795 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 14:28:23 +00:00 |
|
teastep
|
421c5fba05
|
Fix generation of shorewall6 manpages in html doc package
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9793 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 02:52:22 +00:00 |
|
teastep
|
1710621aeb
|
Fix generation of manpages for the html doc package
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9792 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 00:27:33 +00:00 |
|
teastep
|
9f90a9e38b
|
More factorization.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9791 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 00:27:22 +00:00 |
|
teastep
|
278d3f6451
|
More duplicate code factoring
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9790 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 00:27:11 +00:00 |
|
teastep
|
8dc6be749d
|
Factor much-duplicated code
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9789 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-04 00:26:59 +00:00 |
|
teastep
|
77bbd88ab4
|
Cosmetic improvement in generated code for arp and route filtering.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9787 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
|
2009-04-03 14:36:16 +00:00 |
|