Tom Eastep
|
8c0c1bd1e0
|
Omit the 'shorewall' chain from .ip[6]tables-restore-input
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-11-02 08:16:47 -08:00 |
|
Tom Eastep
|
8b825c4c4c
|
Avoid failure of ip[6]tables-restore.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-11-02 07:56:05 -08:00 |
|
Tom Eastep
|
9598ac6fad
|
Correct a couple of problems with -C
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-11-01 10:09:04 -07:00 |
|
Tom Eastep
|
8fb73026c8
|
Replace SAVE_COUNTERS with the -C command option
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-11-01 09:37:57 -07:00 |
|
Tom Eastep
|
4546cbaff7
|
Use chains with names derived from a digest to identify ruleset
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-31 11:36:53 -07:00 |
|
Tom Eastep
|
a83c146636
|
Cleanup
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-30 20:27:06 -07:00 |
|
Tom Eastep
|
2ffc97867c
|
Correct syntax error in the generated script
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-30 19:59:20 -07:00 |
|
Tom Eastep
|
f08803e293
|
Preserve counts on 'restart' without compilation.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-30 18:38:45 -07:00 |
|
Tom Eastep
|
3454e10525
|
Add SAVE_COUNTERS option.
- Also implement recover command
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-30 08:57:56 -07:00 |
|
Tom Eastep
|
edc30fcc8d
|
Process the params file with SHOREWALL_SHELL
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-29 12:22:00 -07:00 |
|
Tom Eastep
|
85e5669fc7
|
Rename function interface_up() to interface_enabled()
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-27 18:38:22 -07:00 |
|
Tom Eastep
|
f5bdc9e7f4
|
Allow two limits in the RATE LIMIT columns
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-22 11:21:43 -07:00 |
|
Tom Eastep
|
3bae6e61cf
|
Eliminate syntax errors in the generated script
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-07 07:53:26 -07:00 |
|
Tom Eastep
|
5204cbc95f
|
Suppress 'No ipsets were saved' warning when SAVE_IPSETS=No
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-07 07:50:12 -07:00 |
|
Tom Eastep
|
ea1b8ac63a
|
Correct handling of empty LOG_BACKEND
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-10-07 07:34:55 -07:00 |
|
Tom Eastep
|
820c769499
|
Correct silly bug in last change
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-29 07:08:39 -07:00 |
|
Tom Eastep
|
e6b0666ac9
|
Save ipsets during normal stop (duh)
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-28 18:43:11 -07:00 |
|
Tom Eastep
|
3174454300
|
Correct SAVE_IPSETS logic in Config.pm
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-28 14:38:01 -07:00 |
|
Tom Eastep
|
ce1c367d1d
|
Re-commit the fix that saves only the appropriate family
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-28 14:09:20 -07:00 |
|
Tom Eastep
|
3e2c903a41
|
Revert "Only save ipsets of the proper family"
This reverts commit b053cab630 .
|
2014-09-28 13:32:32 -07:00 |
|
Tom Eastep
|
b053cab630
|
Only save ipsets of the proper family
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-28 12:58:52 -07:00 |
|
Tom Eastep
|
6f7d063921
|
Remove the target file before saving ipsets in the savesets command
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-28 11:53:52 -07:00 |
|
Tom Eastep
|
3858683e94
|
Allow saving a specified list of ipsets
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-28 11:19:41 -07:00 |
|
Tom Eastep
|
38a18ac9ac
|
Allow indefinite alternative to 'yes' and 'no'
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-27 15:06:18 -07:00 |
|
Tom Eastep
|
a09484356c
|
Support 'yes', 'no, <other> values for simple config options
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-27 07:57:46 -07:00 |
|
Tom Eastep
|
bc8588a68e
|
Fix rule numbers in trace output
- Don't increment $number needlessly when not tracing
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-27 07:57:09 -07:00 |
|
Tom Eastep
|
4989f694cd
|
Correct trace output
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-25 14:47:00 -07:00 |
|
Tom Eastep
|
053df2a5fb
|
Go back to original insert_irule() fix.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-25 09:21:20 -07:00 |
|
Tom Eastep
|
976a1f3deb
|
Merge branch '4.6.3'
Conflicts:
Shorewall/Perl/Shorewall/Misc.pm
|
2014-09-25 08:06:16 -07:00 |
|
Tom Eastep
|
ea40068c10
|
Fix ADMINISABSENTMINDED=No used with stoppedrules
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-25 08:03:35 -07:00 |
|
Tom Eastep
|
56649e2183
|
Don't compile routestopped during check if there is stoppedrules.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-24 19:24:13 -07:00 |
|
Tom Eastep
|
520d21c056
|
Another tweak to LOG_BACKEND
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-24 17:12:05 -07:00 |
|
Tom Eastep
|
540eff24aa
|
Correctons to LOG_BACKEND implementation
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-24 16:35:41 -07:00 |
|
Tom Eastep
|
580e00dabd
|
Implement LOG_BACKEND option
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-24 15:26:13 -07:00 |
|
Tom Eastep
|
4815f7eba3
|
Correct warning message in stoppedrules processing.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-24 11:05:15 -07:00 |
|
Tom Eastep
|
7481514a97
|
Implement the 'terminating' action option
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-23 09:29:13 -07:00 |
|
Tom Eastep
|
1f5439257a
|
Revert "Implement the 'terminating' action option"
This reverts commit 6851744cb7 .
|
2014-09-23 07:39:25 -07:00 |
|
Tom Eastep
|
d97d45f4ad
|
Merge branch '4.6.3'
|
2014-09-23 07:10:17 -07:00 |
|
Tom Eastep
|
f9d98b74a2
|
Merge branch '4.6.2' into 4.6.3
Conflicts:
Shorewall/Perl/Shorewall/Providers.pm
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-16 08:09:20 -07:00 |
|
Tom Eastep
|
0d23b9c542
|
Don't verify required interfaces during 'stop' or 'clear'.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-14 09:29:04 -07:00 |
|
Tom Eastep
|
a7bdfcc47b
|
Refine the rule reduction fix
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-11 20:58:01 -07:00 |
|
Tom Eastep
|
988ee64621
|
Eliminate Redundant Rules
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-11 10:17:01 -07:00 |
|
Tom Eastep
|
9947f4d968
|
Re-enable SECTION PREROUTING in the accounting file.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-10 12:53:08 -07:00 |
|
Tom Eastep
|
9e039e30e5
|
Issue warning message when /etc/iproute2/rt_tables is not writeable
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-02 08:11:33 -07:00 |
|
Tom Eastep
|
6851744cb7
|
Implement the 'terminating' action option
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-09-01 08:16:42 -07:00 |
|
Tom Eastep
|
f963adccf5
|
Correct silly typo in Chains.pm
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-08-31 16:57:24 -07:00 |
|
Tom Eastep
|
fa8c3b3b6c
|
Correct typo in error messages
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-08-24 08:34:33 -07:00 |
|
Tom Eastep
|
602ecad712
|
Cleaner code in expand_variables()
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-08-20 11:25:49 -07:00 |
|
Tom Eastep
|
6f777098d7
|
Add 'wildcard' member to the interface table
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-08-12 06:51:17 -07:00 |
|
Tom Eastep
|
e545329eb9
|
Modify the preceding fix to work with wildcard interfaces
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2014-08-12 06:50:59 -07:00 |
|