forked from extern/shorewall_code
Version to 4.4.16
This commit is contained in:
parent
fe86964fd6
commit
33b54e4ebe
@ -23,7 +23,7 @@
|
|||||||
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
||||||
#
|
#
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -1,6 +1,6 @@
|
|||||||
%define name shorewall-init
|
%define name shorewall-init
|
||||||
%define version 4.4.16
|
%define version 4.4.16
|
||||||
%define release 0RC1
|
%define release 0base
|
||||||
|
|
||||||
Summary: Shorewall-init adds functionality to Shoreline Firewall (Shorewall).
|
Summary: Shorewall-init adds functionality to Shoreline Firewall (Shorewall).
|
||||||
Name: %{name}
|
Name: %{name}
|
||||||
@ -119,6 +119,8 @@ fi
|
|||||||
%doc COPYING changelog.txt releasenotes.txt
|
%doc COPYING changelog.txt releasenotes.txt
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Mon Jan 03 2011 Tom Eastep tom@shorewall.net
|
||||||
|
- Updated to 4.4.16-0base
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
- Updated to 4.4.16-0RC1
|
- Updated to 4.4.16-0RC1
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
|
@ -26,7 +26,7 @@
|
|||||||
# You may only use this script to uninstall the version
|
# You may only use this script to uninstall the version
|
||||||
# shown below. Simply run this script to remove Shorewall Firewall
|
# shown below. Simply run this script to remove Shorewall Firewall
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -22,7 +22,7 @@
|
|||||||
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
||||||
#
|
#
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -1,6 +1,6 @@
|
|||||||
%define name shorewall-lite
|
%define name shorewall-lite
|
||||||
%define version 4.4.16
|
%define version 4.4.16
|
||||||
%define release 0RC1
|
%define release 0base
|
||||||
|
|
||||||
Summary: Shoreline Firewall Lite is an iptables-based firewall for Linux systems.
|
Summary: Shoreline Firewall Lite is an iptables-based firewall for Linux systems.
|
||||||
Name: %{name}
|
Name: %{name}
|
||||||
@ -102,6 +102,8 @@ fi
|
|||||||
%doc COPYING changelog.txt releasenotes.txt
|
%doc COPYING changelog.txt releasenotes.txt
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Mon Jan 03 2011 Tom Eastep tom@shorewall.net
|
||||||
|
- Updated to 4.4.16-0base
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
- Updated to 4.4.16-0RC1
|
- Updated to 4.4.16-0RC1
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
|
@ -26,7 +26,7 @@
|
|||||||
# You may only use this script to uninstall the version
|
# You may only use this script to uninstall the version
|
||||||
# shown below. Simply run this script to remove Shorewall Firewall
|
# shown below. Simply run this script to remove Shorewall Firewall
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -359,7 +359,7 @@ sub initialize( $ ) {
|
|||||||
EXPORT => 0,
|
EXPORT => 0,
|
||||||
STATEMATCH => '-m state --state',
|
STATEMATCH => '-m state --state',
|
||||||
UNTRACKED => 0,
|
UNTRACKED => 0,
|
||||||
VERSION => "4.4.16-RC1",
|
VERSION => "4.4.16",
|
||||||
CAPVERSION => 40415 ,
|
CAPVERSION => 40415 ,
|
||||||
);
|
);
|
||||||
|
|
||||||
|
@ -22,7 +22,7 @@
|
|||||||
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
||||||
#
|
#
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -1,6 +1,5 @@
|
|||||||
----------------------------------------------------------------------------
|
----------------------------------------------------------------------------
|
||||||
S H O R E W A L L 4 . 4 . 1 6
|
S H O R E W A L L 4 . 4 . 1 6
|
||||||
R C 1
|
|
||||||
----------------------------------------------------------------------------
|
----------------------------------------------------------------------------
|
||||||
|
|
||||||
I. PROBLEMS CORRECTED IN THIS RELEASE
|
I. PROBLEMS CORRECTED IN THIS RELEASE
|
||||||
@ -14,66 +13,6 @@ VI. PROBLEMS CORRECTED AND NEW FEATURES IN PRIOR RELEASES
|
|||||||
I. P R O B L E M S C O R R E C T E D I N T H I S R E L E A S E
|
I. P R O B L E M S C O R R E C T E D I N T H I S R E L E A S E
|
||||||
----------------------------------------------------------------------------
|
----------------------------------------------------------------------------
|
||||||
|
|
||||||
RC 1
|
|
||||||
|
|
||||||
1) Corrected an issue in Beta 7 whereby the jump to an action chain
|
|
||||||
in the nat table could be logged inappropriately (logging in an
|
|
||||||
action rule should be applied to the entries in the action body,
|
|
||||||
not to the jump itself).
|
|
||||||
|
|
||||||
Beta 8
|
|
||||||
|
|
||||||
1) Previously, under very rare circumstances, a chain would be
|
|
||||||
optimized away while there were still jumps to the chain. This caused
|
|
||||||
Shorewall start/restart to fail during iptables-restore.
|
|
||||||
|
|
||||||
2) Previously, the setting of BLACKLIST_DISPOSITION was not
|
|
||||||
validated. Now, an error is raised unless the value is DROP or REJECT.
|
|
||||||
|
|
||||||
Beta 7
|
|
||||||
|
|
||||||
None.
|
|
||||||
|
|
||||||
Beta 6
|
|
||||||
|
|
||||||
1) Previously, the root of a wildcard name erroneously matched that
|
|
||||||
name. For example 'eth' matched 'eth+'. Now there must be at least
|
|
||||||
one additional character (e.g., 'eth4').
|
|
||||||
|
|
||||||
2) Use of logical interface names in the notrack and ecn files
|
|
||||||
resulted in perl runtime warning messages.
|
|
||||||
|
|
||||||
3) The use of wildcard-matching names in certain contexts would result
|
|
||||||
in anomalous behavior. Among the symptoms were:
|
|
||||||
|
|
||||||
- Perl run-time messages similar to this one:
|
|
||||||
|
|
||||||
Use of uninitialized value in numeric comparison (<=>)
|
|
||||||
at /usr/share/shorewall/Shorewall/Zones.pm line 1334.
|
|
||||||
|
|
||||||
- Failure to treat the interface as optional or required.
|
|
||||||
|
|
||||||
4) Where two ISPs share the same interface, if one of the ISPs was not
|
|
||||||
reachable, an iptables-restore error such as this occurred:
|
|
||||||
|
|
||||||
iptables-restore v1.4.10: Bad mac address "-j"
|
|
||||||
|
|
||||||
Beta 5
|
|
||||||
|
|
||||||
1) Previously, proxy ARP with logical interface names did not
|
|
||||||
work. Symptoms included numerous Perl runtime error messages.
|
|
||||||
|
|
||||||
Beta 4
|
|
||||||
|
|
||||||
None.
|
|
||||||
|
|
||||||
Beta 3
|
|
||||||
|
|
||||||
1) Compilation no longer fails when /bin/sh is an older (e.g.,
|
|
||||||
RHEL5.x) bash.
|
|
||||||
|
|
||||||
Beta 1
|
|
||||||
|
|
||||||
1) If the output of 'env' contained a multi-line value, then
|
1) If the output of 'env' contained a multi-line value, then
|
||||||
compilation failed with an Internal Error. The code has been
|
compilation failed with an Internal Error. The code has been
|
||||||
changed so that the compiler now handles multi-line values
|
changed so that the compiler now handles multi-line values
|
||||||
@ -89,6 +28,41 @@ Beta 1
|
|||||||
.: 31: Can't open /etc/shorewall6/params
|
.: 31: Can't open /etc/shorewall6/params
|
||||||
ERROR: Processing of /etc/shorewall6/params failed
|
ERROR: Processing of /etc/shorewall6/params failed
|
||||||
|
|
||||||
|
4) Compilation no longer fails when /bin/sh is an older (e.g.,
|
||||||
|
RHEL5.x) bash.
|
||||||
|
|
||||||
|
5) Previously, proxy ARP with logical interface names did not
|
||||||
|
work. Symptoms included numerous Perl runtime error messages.
|
||||||
|
|
||||||
|
6) Previously, the root of a wildcard name erroneously matched that
|
||||||
|
name. For example 'eth' matched 'eth+'. Now there must be at least
|
||||||
|
one additional character (e.g., 'eth4').
|
||||||
|
|
||||||
|
7) Use of logical interface names in the notrack and ecn files
|
||||||
|
resulted in perl runtime warning messages.
|
||||||
|
|
||||||
|
8) The use of wildcard-matching names in certain contexts would result
|
||||||
|
in anomalous behavior. Among the symptoms were:
|
||||||
|
|
||||||
|
- Perl run-time messages similar to this one:
|
||||||
|
|
||||||
|
Use of uninitialized value in numeric comparison (<=>)
|
||||||
|
at /usr/share/shorewall/Shorewall/Zones.pm line 1334.
|
||||||
|
|
||||||
|
- Failure to treat the interface as optional or required.
|
||||||
|
|
||||||
|
9) Where two ISPs share the same interface, if one of the ISPs was not
|
||||||
|
reachable, an iptables-restore error such as this occurred:
|
||||||
|
|
||||||
|
iptables-restore v1.4.10: Bad mac address "-j"
|
||||||
|
|
||||||
|
10) Previously, under very rare circumstances, a chain would be
|
||||||
|
optimized away while there were still jumps to the chain. This caused
|
||||||
|
Shorewall start/restart to fail during iptables-restore.
|
||||||
|
|
||||||
|
11) Previously, the setting of BLACKLIST_DISPOSITION was not
|
||||||
|
validated. Now, an error is raised unless the value is DROP or REJECT.
|
||||||
|
|
||||||
----------------------------------------------------------------------------
|
----------------------------------------------------------------------------
|
||||||
I I. K N O W N P R O B L E M S R E M A I N I N G
|
I I. K N O W N P R O B L E M S R E M A I N I N G
|
||||||
----------------------------------------------------------------------------
|
----------------------------------------------------------------------------
|
||||||
|
@ -1,6 +1,6 @@
|
|||||||
%define name shorewall
|
%define name shorewall
|
||||||
%define version 4.4.16
|
%define version 4.4.16
|
||||||
%define release 0RC1
|
%define release 0base
|
||||||
|
|
||||||
Summary: Shoreline Firewall is an iptables-based firewall for Linux systems.
|
Summary: Shoreline Firewall is an iptables-based firewall for Linux systems.
|
||||||
Name: %{name}
|
Name: %{name}
|
||||||
@ -109,6 +109,8 @@ fi
|
|||||||
%doc COPYING INSTALL changelog.txt releasenotes.txt Contrib/* Samples
|
%doc COPYING INSTALL changelog.txt releasenotes.txt Contrib/* Samples
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Mon Jan 03 2011 Tom Eastep tom@shorewall.net
|
||||||
|
- Updated to 4.4.16-0base
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
- Updated to 4.4.16-0RC1
|
- Updated to 4.4.16-0RC1
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
|
@ -26,7 +26,7 @@
|
|||||||
# You may only use this script to uninstall the version
|
# You may only use this script to uninstall the version
|
||||||
# shown below. Simply run this script to remove Shorewall Firewall
|
# shown below. Simply run this script to remove Shorewall Firewall
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -22,7 +22,7 @@
|
|||||||
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
||||||
#
|
#
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -1,6 +1,6 @@
|
|||||||
%define name shorewall6-lite
|
%define name shorewall6-lite
|
||||||
%define version 4.4.16
|
%define version 4.4.16
|
||||||
%define release 0RC1
|
%define release 0base
|
||||||
|
|
||||||
Summary: Shoreline Firewall 6 Lite is an ip6tables-based firewall for Linux systems.
|
Summary: Shoreline Firewall 6 Lite is an ip6tables-based firewall for Linux systems.
|
||||||
Name: %{name}
|
Name: %{name}
|
||||||
@ -93,6 +93,8 @@ fi
|
|||||||
%doc COPYING changelog.txt releasenotes.txt
|
%doc COPYING changelog.txt releasenotes.txt
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Mon Jan 03 2011 Tom Eastep tom@shorewall.net
|
||||||
|
- Updated to 4.4.16-0base
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
- Updated to 4.4.16-0RC1
|
- Updated to 4.4.16-0RC1
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
|
@ -26,7 +26,7 @@
|
|||||||
# You may only use this script to uninstall the version
|
# You may only use this script to uninstall the version
|
||||||
# shown below. Simply run this script to remove Shorewall Firewall
|
# shown below. Simply run this script to remove Shorewall Firewall
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -22,7 +22,7 @@
|
|||||||
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
# Foundation, Inc., 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
|
||||||
#
|
#
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
@ -1,6 +1,6 @@
|
|||||||
%define name shorewall6
|
%define name shorewall6
|
||||||
%define version 4.4.16
|
%define version 4.4.16
|
||||||
%define release 0RC1
|
%define release 0base
|
||||||
|
|
||||||
Summary: Shoreline Firewall 6 is an ip6tables-based firewall for Linux systems.
|
Summary: Shoreline Firewall 6 is an ip6tables-based firewall for Linux systems.
|
||||||
Name: %{name}
|
Name: %{name}
|
||||||
@ -98,6 +98,8 @@ fi
|
|||||||
%doc COPYING INSTALL changelog.txt releasenotes.txt tunnel ipsecvpn ipv6 Samples6
|
%doc COPYING INSTALL changelog.txt releasenotes.txt tunnel ipsecvpn ipv6 Samples6
|
||||||
|
|
||||||
%changelog
|
%changelog
|
||||||
|
* Mon Jan 03 2011 Tom Eastep tom@shorewall.net
|
||||||
|
- Updated to 4.4.16-0base
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
- Updated to 4.4.16-0RC1
|
- Updated to 4.4.16-0RC1
|
||||||
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
* Thu Dec 30 2010 Tom Eastep tom@shorewall.net
|
||||||
|
@ -26,7 +26,7 @@
|
|||||||
# You may only use this script to uninstall the version
|
# You may only use this script to uninstall the version
|
||||||
# shown below. Simply run this script to remove Shorewall Firewall
|
# shown below. Simply run this script to remove Shorewall Firewall
|
||||||
|
|
||||||
VERSION=4.4.16-RC1
|
VERSION=4.4.16
|
||||||
|
|
||||||
usage() # $1 = exit status
|
usage() # $1 = exit status
|
||||||
{
|
{
|
||||||
|
Loading…
Reference in New Issue
Block a user