Commit Graph

9399 Commits

Author SHA1 Message Date
Tom Eastep
e40be793ba Insure that VERBOSITY=0 when interrogating compiled script version
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-28 11:24:52 -07:00
Tom Eastep
ab65b7c274 Update 4.4.13 Known Problems
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-28 11:02:20 -07:00
Tom Eastep
4585888ebb Update known problems with split_list() issue 2010-10-26 07:10:01 -07:00
Tom Eastep
63ac075363 Fix split_list() 2010-10-26 07:04:07 -07:00
Tom Eastep
e41309c9d8 Correct problems corrected.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-02 13:20:51 -07:00
Tom Eastep
4cf7f331cd Shorewall 4.4.13.3
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-02 13:06:13 -07:00
Tom Eastep
5725659188 Fix log reading in the -lite packages
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-02 13:03:21 -07:00
Tom Eastep
99a81b492b Correct version 2010-10-01 15:28:17 -07:00
Tom Eastep
f0e5b00f10 Shorewall 4.4.13.2
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-01 15:25:39 -07:00
Tom Eastep
2c10d4b8f9 Clamp VERBOSITY to valid range
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-01 15:20:34 -07:00
Tom Eastep
50f06ff80e Correct Debian Lite init scripts
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-01 15:20:25 -07:00
Tom Eastep
51f79f40ec Revise fix for extraneous progress messages 2010-09-27 16:16:29 -07:00
Tom Eastep
43c7e4f12b Prevent random progress messages during compilation.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-27 15:56:49 -07:00
Tom Eastep
c57c42856b Add workaround to known problems 2010-09-26 12:36:39 -07:00
Tom Eastep
0857c12a9c Fix syntax error in blacklist fix 2010-09-24 12:04:06 -07:00
Tom Eastep
e352cd3a65 Update Known Problems
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-24 11:49:46 -07:00
Tom Eastep
d412547020 Document blacklisting fix
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-24 11:20:22 -07:00
Tom Eastep
f2fa68bdc9 Correct blacklisting in simple configurations
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-24 11:17:21 -07:00
Tom Eastep
059553b134 Make timestamps in log uniform 2010-09-23 07:15:24 -07:00
Tom Eastep
65631e14c7 Revert Date Fix 2010-09-23 06:48:29 -07:00
Tom Eastep
9f9d5e3bc9 Document date formatting fix 2010-09-22 17:45:26 -07:00
Tom Eastep
1dd93bbb22 Fix date formatting 2010-09-22 17:41:02 -07:00
Tom Eastep
6ce1b9c608 Prepare for 4.4.13.1 in case it is needed 2010-09-22 16:41:19 -07:00
Tom Eastep
a258de3c9d Update known problems
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-21 07:50:13 -07:00
Tom Eastep
a796623dde Rename DESTIFAC_DISALLOW -> DESTIFACE_DISALLOW
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-20 09:40:31 -07:00
Tom Eastep
f6f840bebf Misc cleanup for 4.4.13
1. Replace statement with equivalent function call in promote_blacklist_rules()
2. Bump version of Tunnels.pm
3. Fix typo in comment in Zones.pm

Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-20 08:15:24 -07:00
Tom Eastep
59905e8744 Set version to 4.4.13 2010-09-20 07:25:33 -07:00
Tom Eastep
7d2f6379e0 Document fix for '*' in interface names.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-19 15:19:48 -07:00
Tom Eastep
8bdd9828fd Don't allow '*' in interface names 2010-09-19 15:13:54 -07:00
Tom Eastep
c7fc4ce1f5 Correct order of release note entries 2010-09-19 12:54:54 -07:00
Tom Eastep
35a686eaa1 Add delete_reference() function.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-19 08:28:29 -07:00
Tom Eastep
9ba82bec1f Add warning about redundant 'blacklist' option
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-19 08:28:05 -07:00
Tom Eastep
e06ca34298 Add redundancy warning re 'blacklst' 2010-09-19 08:03:01 -07:00
Tom Eastep
b3d6ae78ba Add redundancy warning re 'blacklst' 2010-09-19 07:57:36 -07:00
Tom Eastep
940ccf2c34 Document for tcfilter port ranges
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 15:11:41 -07:00
Tom Eastep
c0382b8cb9 Adjust reference count in move rules.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 15:11:17 -07:00
Tom Eastep
ce9b5ee944 Make blacklist rule promotion much more effecient.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 13:35:24 -07:00
Tom Eastep
74abd4ad54 In copy_rules(), handle the unlikely case where both chains have blacklist jumps.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 12:26:07 -07:00
Tom Eastep
f7db24f756 Merge branch '4.4.13'
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 09:29:50 -07:00
Tom Eastep
f25b9e1967 Allow :<port> in tcfilters
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 09:26:29 -07:00
Tom Eastep
0e9c704069 Don't scan the filter table for jumps to 'blacklst' if the 'blacklst' chain does not exist
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 08:42:21 -07:00
Tom Eastep
c3299d5f89 Enable blacklist rule promotion
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 08:38:22 -07:00
Tom Eastep
6f0893cd7a Correct Chains::promote_blacklist_rules()
- Interate through chains that jump to 'blacklst' until no rule is promoted
  This is required to promote jumps past exclusion chains
- Correct reference counting; the first cut was horribly wrong

Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 08:38:14 -07:00
Tom Eastep
c040344bc1 Promote 'in' blacklist rules to the head of the interface chain
- Added Chains::promote_blacklist_rules()
- Called the function from Rules::generate_matrix()

Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 08:38:02 -07:00
Tom Eastep
2fa16f6d08 Enable blacklist rule promotion
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 08:36:59 -07:00
Tom Eastep
578fc6c521 Correct Chains::promote_blacklist_rules()
- Interate through chains that jump to 'blacklst' until no rule is promoted
  This is required to promote jumps past exclusion chains
- Correct reference counting; the first cut was horribly wrong

Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 08:36:35 -07:00
Tom Eastep
fd6ff1849a Promote 'in' blacklist rules to the head of the interface chain
- Added Chains::promote_blacklist_rules()
- Called the function from Rules::generate_matrix()

Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-18 07:37:42 -07:00
Tom Eastep
801c1cb6b3 Update release docs 2010-09-17 17:44:05 -07:00
Tom Eastep
fd568ece47 Clear raw table on 'clear' 2010-09-17 17:43:57 -07:00
Tom Eastep
1588c700c5 Fix blacklisting vs vservers 2010-09-17 17:43:40 -07:00