2003-06-18 20:26:05 +02:00
|
|
|
Changes since 1.4.5
|
2003-05-22 22:37:24 +02:00
|
|
|
|
2003-06-18 20:26:05 +02:00
|
|
|
1) Worked around RH7.3 "service" anomaly.
|
2003-06-18 20:37:37 +02:00
|
|
|
|
|
|
|
2) Implemented 'newnotsyn' interface option.
|
2003-06-22 18:58:33 +02:00
|
|
|
|
|
|
|
3) Document range in masq ADDRESS column and suppress ADD_SNAT_ALIASES
|
|
|
|
behavior in that case.
|
|
|
|
|
|
|
|
4) Enable ADD_SNAT_ALIASES=Yes for SNAT ranges.
|
|
|
|
|
|
|
|
5) Allow Shorewall to add aliases to other than the first subnet on an
|
|
|
|
interface.
|
2003-06-23 00:56:25 +02:00
|
|
|
|
2003-06-27 23:29:26 +02:00
|
|
|
6) Add support for load-balancing.
|
|
|
|
|
|
|
|
7) Toned down the disclaimer for the 'check' command.
|
|
|
|
|
|
|
|
8) Implemented support for the Connection Tracking Match extension in
|
|
|
|
iptables 1.2.8/Kernel 2.4.21.
|
|
|
|
|
2003-06-28 03:09:12 +02:00
|
|
|
9) Removed the NAT_ENABLED, MANGLE_ENABLED and MULTIPORT configuration
|
|
|
|
parameters and replaced them with code that detects these
|
|
|
|
capabilities.
|
|
|
|
|
2003-06-28 17:22:22 +02:00
|
|
|
10) Added the SHOREWALL_SHELL configuraiton parameter.
|
2003-06-27 23:29:26 +02:00
|
|
|
|
2003-06-30 16:21:42 +02:00
|
|
|
11) Fixed capability reporting (thanks to Simon Matter).
|
2003-07-01 22:29:01 +02:00
|
|
|
|
|
|
|
12) Correct the implementation of destination IP list in DNAT[-] rules.
|
|
|
|
|
2003-07-04 17:08:29 +02:00
|
|
|
13) Check for shells whose arithmetic support is broken.
|
2003-07-01 22:29:01 +02:00
|
|
|
|
2003-07-05 19:14:21 +02:00
|
|
|
14) Moved IP Address manipulation functions to
|
|
|
|
/usr/share/shorewall/functions.
|
|
|
|
|
|
|
|
15. Added ipcalc command.
|
2003-07-06 02:06:06 +02:00
|
|
|
|
|
|
|
16. Fixed handling of destination DNS names containing a "-"
|
2003-07-06 15:24:23 +02:00
|
|
|
|
|
|
|
17. Make ip_range() smarter.
|
|
|
|
|
|
|
|
18. Added /sbin/shorewall iprange command.
|
2003-07-14 18:20:45 +02:00
|
|
|
|
|
|
|
19. Fixed handling of excluded zone processing in DNAT and REDIRECT
|
|
|
|
rules (re-added the protocol to the rule). Fixed parsing of exclude
|
|
|
|
zones.
|