Commit Graph

6372 Commits

Author SHA1 Message Date
teastep
06d3269f7e Order interfaces within zone when generating top-level rules
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8125 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-30 21:57:39 +00:00
teastep
8ef198b3a6 More optimization
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8124 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-30 18:47:27 +00:00
teastep
b81ae53477 Correct handling of IPSEC; re-order rules slightly
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8123 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-30 16:39:40 +00:00
teastep
2a2a7530c2 Add optimizations in basic chain handling
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8122 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-30 00:03:25 +00:00
teastep
e75be13ff4 Fix exclusion in zone definition
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8121 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-28 21:38:18 +00:00
teastep
ed709b56c7 Place zone name in error message
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8118 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-28 20:29:27 +00:00
teastep
4be347d1cc Move 'dynamic' jumps to the INPUT and FORWARD chains
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8117 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-28 19:41:23 +00:00
teastep
3cad33ea20 More defense against silly lists
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8116 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-26 22:15:07 +00:00
teastep
7b4abdba94 Validate comma-separated lists
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8109 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-26 01:07:57 +00:00
teastep
f960345b51 Catch invalid lists in nat/masq entries
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8107 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-25 23:52:33 +00:00
teastep
391ea14350 Update for new releases; fix character encoding mess left by bogus HTML editor
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8104 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-25 22:06:47 +00:00
teastep
000af58365 Update release notes
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8101 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-24 23:45:24 +00:00
teastep
65df4d9f73 Ruleset optimization -- phase I
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8100 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-24 16:22:03 +00:00
teastep
459812507a Decommit 'sourceonly' for now
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8099 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-23 21:23:27 +00:00
teastep
f77f0de2ad Rewording in release notes -- fix man page
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8096 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-22 23:58:06 +00:00
teastep
746a00994d Create 'sourceonly' hosts option
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8093 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-22 23:48:03 +00:00
teastep
336279e679 compress documentation index
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8092 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-22 23:47:42 +00:00
teastep
03091be09a Allow loose interface matching in more places
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8091 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-22 23:21:44 +00:00
teastep
6345fa2a40 Update Shorewall-perl documenation with another difference between shorewall-shell and -perl
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8089 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-22 21:18:28 +00:00
el_cubano
15a0732984 Make shorewall.conf terminal friendly again.
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8088 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-21 15:52:22 +00:00
el_cubano
3038af67ac Document that for interface restricions to take effect for each member of a comma separated list in a rule, the interface must be explicitly stated for each member of the list in a rule.
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8083 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-21 15:09:13 +00:00
teastep
fb426cd498 Fix for masq
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8082 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-21 05:57:58 +00:00
teastep
e2e827cdbc Allow loose match for interfaces names in masq, nat and netmap
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8079 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-19 23:36:27 +00:00
teastep
44f8dc96cc Refer reader to VPN article for local PPTP client info
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8078 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-19 16:49:08 +00:00
teastep
4a9431fb73 Fix handling of COMMENT in shorewall-shell
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8077 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-18 22:14:29 +00:00
teastep
3f4d773489 Allow DNS names in DEST column of a DNAT rule
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8076 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-17 19:02:40 +00:00
teastep
99a5eba368 Remove delayed insertion of RETURN rules in dnat chain
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8074 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-16 23:24:41 +00:00
teastep
efc3167bb9 Adjust wording of TLS/SSL warning
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8073 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-15 23:10:07 +00:00
teastep
191d17b1a6 Add warning about TLS/SSL with ftp helpers
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8072 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-15 22:10:59 +00:00
teastep
6b564e0eb3 Factor out invariant parts of a loop
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8071 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-15 19:02:00 +00:00
teastep
d189364d9a Release documentation for interface lists in masq and nat files
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8070 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-15 03:48:37 +00:00
teastep
da02d6d9af Interface lists in masq and nat files -- man pages
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8069 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-15 02:47:32 +00:00
teastep
545dd7dbc3 Interface lists in masq and nat files
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8068 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-15 02:39:21 +00:00
teastep
3eb254c0b6 Recommend DMZ in answer to FAQ 2 -- Take 2
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8067 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-14 21:28:34 +00:00
teastep
54a6755096 Recommend DMZ in answer to FAQ 2
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8066 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-14 21:23:20 +00:00
teastep
2f96bc5181 More work on DNAT/REDIRECT mess
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8065 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-14 16:34:26 +00:00
teastep
318b4f002d Consult policies when constructing dnat chains; warning when zone specified on NAT-only rules
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8061 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-13 18:47:06 +00:00
teastep
72999ba23f Fix Perl directory/tarball names in build script
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8059 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-13 16:50:16 +00:00
teastep
bbf88e6a66 Fix Patch/Beta/RC RPM names in build script
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8058 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-13 16:48:00 +00:00
teastep
15e54e8e69 Update release notes
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8053 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-13 02:05:41 +00:00
teastep
55a25721e6 More tweaks to DNAT/REDIRECT thingy
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8052 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-13 00:41:10 +00:00
teastep
88a74e40f3 Another look at DNAT/REDIRECT and nested zones
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8051 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-12 21:11:39 +00:00
teastep
755983b38c Make DNAT/MASQ short-circuit dependent on z->fw policy
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8050 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-12 17:39:14 +00:00
teastep
d4db69739c Update man pages based on previous fix
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8049 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-12 01:47:58 +00:00
teastep
3d84cec3a3 Fix for DNAT/REDIRECT nested-zone mess
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8048 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-12 01:32:18 +00:00
teastep
2583fc3f93 Fix initialization problem in Rules module
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8047 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-12 00:35:07 +00:00
teastep
a855014784 Add discussion of DNAT/REDIRECT and nesting to the 'nesting' manpage
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8046 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-11 23:14:59 +00:00
teastep
7f28dedeea Man page updates
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8044 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-11 22:38:39 +00:00
teastep
93e0f6cb51 Clarify zone definition with wildcards
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8042 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-10 23:53:13 +00:00
teastep
8a22a4e05a Simplify fix to accounting
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@8040 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
2008-01-10 21:07:07 +00:00