Tom Eastep
|
8a84c1c371
|
Avoid 'echo' failure during 'enable'.
- in the case where the kernel doesn't know about
/proc/sys/net/ipv6/conf/x/accept_ra
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-31 07:02:11 -07:00 |
|
Tom Eastep
|
1db5741edd
|
Merge branch '4.5.15'
Conflicts:
Shorewall/Perl/Shorewall/Proc.pm
|
2013-03-30 18:08:17 -07:00 |
|
Tom Eastep
|
1139e1a09c
|
Establish /proc/sys/net/ipv6/conf/X/forwarding during 'enable'
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-30 17:26:50 -07:00 |
|
Tom Eastep
|
d415de1883
|
Add the accept_ra Shorewall6 interface option.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-30 16:44:18 -07:00 |
|
Tom Eastep
|
2381b0fd8f
|
Correct typo in FAQ 97a
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-30 08:41:57 -07:00 |
|
Tom Eastep
|
448d957e48
|
Fix use of names for DSCP.
- From Thibaut Chèze
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-30 07:20:10 -07:00 |
|
Tom Eastep
|
8fe7963631
|
Revert another replace->add change.
- Also includes a cosmetic change.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-27 06:57:49 -07:00 |
|
Tom Eastep
|
6334b09653
|
Add a comment about why the 'id' member of builtin tables is initialized in process_providers()
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-26 14:30:42 -07:00 |
|
Tom Eastep
|
e572d6ce50
|
Use the 'id' member in copy_and_edit_table().
- Also add prohibit and unreachable to the existing blackhole case.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-26 07:38:13 -07:00 |
|
Tom Eastep
|
792a19bf4b
|
Initialize the 'id' member of reserved tables after .conf has been read.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-26 07:36:57 -07:00 |
|
Tom Eastep
|
61e21de41b
|
Revert bad hunk from last change.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-26 07:00:16 -07:00 |
|
Tom Eastep
|
43932f2bbd
|
Cleanup of table id/number and 'route replace' erradication
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-25 07:35:30 -07:00 |
|
Tom Eastep
|
6e5f00062c
|
Revert "Use 'replace' rather than 'add' for routes defined in the routes file."
This reverts commit 215fd9e234 .
Conflicts:
Shorewall/Perl/Shorewall/Providers.pm
|
2013-03-24 14:19:31 -07:00 |
|
Tom Eastep
|
b5ea4067e4
|
Implement USE_RT_NAMES
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-24 10:56:38 -07:00 |
|
Tom Eastep
|
1dfbc11cfa
|
More cleanup of the Multi-ISP null routing section.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-24 09:24:57 -07:00 |
|
Tom Eastep
|
0c30e7c013
|
Uniform handling of VLSM width.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-23 09:19:26 -07:00 |
|
Tom Eastep
|
536fea27a5
|
Detect duplicate routes.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-22 14:59:35 -07:00 |
|
Tom Eastep
|
215fd9e234
|
Use 'replace' rather than 'add' for routes defined in the routes file.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-22 14:55:27 -07:00 |
|
Tom Eastep
|
1701bd46fc
|
Correct table entry in the Shorewall-init article.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-22 14:54:18 -07:00 |
|
Tom Eastep
|
4c0a0e0ff8
|
Don't emit 'qt ' in the undo_x_routing files.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-22 13:20:27 -07:00 |
|
Tom Eastep
|
1a4db31ff0
|
Make NetworkManager with with Shorewall-init on SuSE.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-21 15:02:35 -07:00 |
|
Tom Eastep
|
9e5cf92a59
|
Merge branch '4.5.14'
|
2013-03-21 12:00:20 -07:00 |
|
Tom Eastep
|
3ac6835650
|
Handle IPv6 /32 networks correctly.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-21 11:30:59 -07:00 |
|
Tom Eastep
|
6ebe28040b
|
Add Four to the list of authors
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-17 07:42:45 -07:00 |
|
Tom Eastep
|
1e866eac28
|
Implement the other forms of NULL routing.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-16 08:20:52 -07:00 |
|
Tom Eastep
|
e2123ae276
|
Correct ifupdown handling on Debian
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-15 13:03:53 -07:00 |
|
Tom Eastep
|
b27e5f4378
|
Correct installation of /sbin/ifup-local and /sbin/ifdown-local
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-15 11:14:44 -07:00 |
|
Tom Eastep
|
b85880e8e6
|
Correct handling of install on RedHat and derivatives.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-15 10:53:36 -07:00 |
|
Tom Eastep
|
3e3cce534e
|
Split ifupdown.sh into separate per-distro scripts.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-15 10:25:32 -07:00 |
|
Tom Eastep
|
9a4df0fac8
|
Don't delete the user's tcstart file.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-14 15:07:33 -07:00 |
|
Tom Eastep
|
8839ac45cf
|
Merge branch '4.5.14'
|
2013-03-14 14:03:49 -07:00 |
|
Tom Eastep
|
2763826059
|
Install the routes file unless $SPARSE
- Don't delete the file unconditionally.
- Delete an unhelpful comment
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-14 14:03:05 -07:00 |
|
Tom Eastep
|
8c53fa175c
|
Update action tables in Shorewall-init article
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-14 11:05:47 -07:00 |
|
Tom Eastep
|
d246bedab8
|
Install the routes file unless $SPARSE
- Don't delete the file unconditionally.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-14 11:04:26 -07:00 |
|
Tom Eastep
|
d005ffa766
|
Update action tables in Shorewall-init article
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-13 11:17:10 -07:00 |
|
Tom Eastep
|
b10218e773
|
Add a 'UDPLITE Port Redirection' capability.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-10 10:07:52 -07:00 |
|
Tom Eastep
|
e77ca971bd
|
Avoid shell diagnostic in 'show capabilities' when no arptables installed
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-10 09:48:10 -07:00 |
|
Tom Eastep
|
8442477224
|
Add Enhanced Multi-port match capability
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-10 09:04:47 -07:00 |
|
Tom Eastep
|
fd2fcc996f
|
Don't allow port redirection with UDPLITE
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-10 08:32:45 -07:00 |
|
Tom Eastep
|
6e9fc77f73
|
Remove nonsensical comment from the stoppedrules manpage
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-09 08:15:13 -08:00 |
|
Tom Eastep
|
8c4c856caa
|
Issue a warning if the contents of the DUPLICATE column may be invalid.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-09 07:57:13 -08:00 |
|
Tom Eastep
|
a167e3449e
|
Avoid Perl run-time errors when checking a provider interface.
- Handle case where a provider interface matches a wildcard
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-09 07:56:16 -08:00 |
|
Tom Eastep
|
b871fc689c
|
Merge branch 'FETCH_HEAD' into 4.5.14
|
2013-03-09 07:11:47 -08:00 |
|
Tom Eastep
|
cfe2bd11b0
|
Allow 'none' in the COPY column when the DUPLICATE column is empty.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-08 19:18:13 -08:00 |
|
Tom Eastep
|
bd64baa8d9
|
Require at least one zone for a provider
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-08 13:08:23 -08:00 |
|
Tom Eastep
|
e1f7a9dbf8
|
Reverse an earlier silly patch.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-08 10:38:13 -08:00 |
|
Tom Eastep
|
fe6533943c
|
Correct 'routes' manpages.
- change 4.5.15 with 4.5.14 for the availability of blackhole routes
- Add 'main' to the legal providers.
|
2013-03-08 08:26:08 -08:00 |
|
Tom Eastep
|
7913082d41
|
Merge branch 'master' into 4.5.14
|
2013-03-08 08:19:43 -08:00 |
|
Tom Eastep
|
a990ceecba
|
Clarify ipsets WRT xtables-addons.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
|
2013-03-08 08:18:00 -08:00 |
|
Tom Eastep
|
4586568649
|
Merge branch '4.5.14' of ssh://git.code.sf.net/p/shorewall/code
|
2013-03-08 08:00:43 -08:00 |
|