mirror of
https://gitlab.com/shorewall/code.git
synced 2024-12-12 17:30:44 +01:00
f8eb44095b
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@677 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
59 lines
1.6 KiB
Plaintext
59 lines
1.6 KiB
Plaintext
Changes since 1.4.5
|
|
|
|
1) Worked around RH7.3 "service" anomaly.
|
|
|
|
2) Implemented 'newnotsyn' interface option.
|
|
|
|
3) Document range in masq ADDRESS column and suppress ADD_SNAT_ALIASES
|
|
behavior in that case.
|
|
|
|
4) Enable ADD_SNAT_ALIASES=Yes for SNAT ranges.
|
|
|
|
5) Allow Shorewall to add aliases to other than the first subnet on an
|
|
interface.
|
|
|
|
6) Add support for load-balancing.
|
|
|
|
7) Toned down the disclaimer for the 'check' command.
|
|
|
|
8) Implemented support for the Connection Tracking Match extension in
|
|
iptables 1.2.8/Kernel 2.4.21.
|
|
|
|
9) Removed the NAT_ENABLED, MANGLE_ENABLED and MULTIPORT configuration
|
|
parameters and replaced them with code that detects these
|
|
capabilities.
|
|
|
|
10) Added the SHOREWALL_SHELL configuraiton parameter.
|
|
|
|
11) Fixed capability reporting (thanks to Simon Matter).
|
|
|
|
12) Correct the implementation of destination IP list in DNAT[-] rules.
|
|
|
|
13) Check for shells whose arithmetic support is broken.
|
|
|
|
14) Moved IP Address manipulation functions to
|
|
/usr/share/shorewall/functions.
|
|
|
|
15. Added ipcalc command.
|
|
|
|
16. Fixed handling of destination DNS names containing a "-"
|
|
|
|
17. Make ip_range() smarter.
|
|
|
|
18. Added /sbin/shorewall iprange command.
|
|
|
|
19. Fixed handling of excluded zone processing in DNAT and REDIRECT
|
|
rules (re-added the protocol to the rule). Fixed parsing of exclude
|
|
zones.
|
|
|
|
20. Display policy chain along with policy in 'check' command.
|
|
|
|
21. Support Linux 2.6 compressed modules.
|
|
|
|
22. Don't display DHCP message when there are no DHCP interface.
|
|
|
|
23. Move determine_capabilities call to do_initialize to ensure that
|
|
MANGLE_ENABLED is set before it is tested.
|
|
|
|
24. Fixed MAC address handling in the SOURCE column of tcrules.
|