summaryrefslogtreecommitdiff
path: root/interface-definitions/include/firewall
AgeCommit message (Expand)Author
2024-10-07xml: T6430: add re-usable vrf CLI node for firewall and pbrChristian Breunig
2024-10-03T6760: firewall: add packet modifications existing in policy route to regular...Nicolas Fort
2024-09-10T6698: firewall: add matcher for vlan type. (#4027)Nicolás Fort
2024-08-28T6647: firewall. Introduce patch for accepting ARP and DHCP replies on statef...Nicolas Fort
2024-08-05firewall: T4694: fix GRE key include path in XMLChristian Breunig
2024-08-04firewall: T4694: Adding GRE flags & fields matches to firewall rulesAndrew Topp
2024-08-02T4072: change same helpers in xml definitions; add notrack action for prerout...Nicolas Fort
2024-08-01T6570: firewall: add global-option to configure sysctl parameter for enabling...Nicolas Fort
2024-08-01T4072: firewall: extend firewall bridge capabilities, in order to include new...Nicolas Fort
2024-07-28firewall: T4694: Adding rt ipsec exists/missing match to firewall configs (#3...talmakion
2024-06-04T3900: T6394: extend functionalities in firewall; move netfilter sysctl timeo...Nicolas Fort
2024-05-15T3900: add support for raw table in firewall.Nicolas Fort
2024-05-07T6305: accept ipoe interfaces on firewall rulesetNicolas Fort
2024-04-15T5535: firewall: migrate command <set system ip disable-directed-broadcast> t...Nicolas Fort
2024-03-12conntrack: T4022: add RTSP conntrack helperIndrek Ardel
2024-03-05xml: T5738: use generic-disable-node building block for "disable" CLI nodesChristian Breunig
2024-02-01Merge pull request #2756 from nicolas-fort/T4839Christian Breunig
2024-01-25T4839: firewall: Add dynamic address group in firewall configuration, and app...Nicolas Fort
2024-01-23T5977: firewall: remove ipsec options in output chain rule definitions, since...Nicolas Fort
2023-12-26firewall: T5834: Improve log message and simplify log-option includeIndrajit Raychaudhuri
2023-12-26firewall: T5834: Remove vestigial include fileIndrajit Raychaudhuri
2023-12-26firewall: T5834: Rename 'enable-default-log' to 'default-log'Indrajit Raychaudhuri
2023-12-15firewall: T4502: add ofload to firewall table actionsGurliGebis
2023-11-24T5775: firewall: re-add state-policy to firewall. These commands are now incl...Nicolas Fort
2023-11-22T5637: firewall: extend rule for default-action to firewall bridge, in order ...Nicolas Fort
2023-11-10T5729: firewall: switch to valueless in order to remove unnecessary <enable|d...Nicolas Fort
2023-10-25T5681: Firewall,Nat and Nat66: simplified and standarize interface matcher (v...Nicolas Fort
2023-10-06T5637: add new rule at the end of base chains for default-actions. This enabl...Nicolas Fort
2023-09-30Merge pull request #2300 from nicolas-fort/T5600Christian Breunig
2023-09-29T5616: firewall: add option to be able to match firewall marks in firewall fi...Nicolas Fort
2023-09-28Merge pull request #2295 from sever-sever/T5217-synproxyChristian Breunig
2023-09-24firewall: T5614: Add support for matching on conntrack helpersarthurdev
2023-09-21T5217: Add firewall synproxyViacheslav Hletenko
2023-09-21T5600: firewall: change constraints for inbound|outbound interface-name. Now ...Nicolas Fort
2023-09-19firewall: T4502: Update to flowtable CLIsarthurdev
2023-09-18conntrack: T5217: Add tcp flag matching to `system conntrack ignore`sarthurdev
2023-09-09T4502: firewall: Add software flow offload using flowtableYuxiang Zhu
2023-09-08Merge pull request #2222 from nicolas-fort/T4072-fwall-bridgeChristian Breunig
2023-09-07T4072: add firewall bridge filtering. First implementation only applies for f...Nicolas Fort
2023-09-06Merge pull request #2199 from sarthurdev/T4309Christian Breunig
2023-09-05firewall: T3509: Split IPv4 and IPv6 reverse path filtering like on interfacessarthurdev
2023-09-04conntrack: T4309: T4903: Refactor `system conntrack ignore` rule generation, ...sarthurdev
2023-08-23T5450: update smoketest and interface definition in order to work with new fi...Nicolas Fort
2023-08-11T5460: remove config-trap from firewallNicolas Fort
2023-08-11T5160: firewall refactor: fix regexep for connection-status. Create new file ...Nicolas Fort
2023-08-11T5160: firewall refactor: change default value for <default-action> from <dro...Nicolas Fort
2023-08-11T5160: firewall refactor: move <set firewall ipv6 ipv6-name ...> to <set fire...Nicolas Fort
2023-08-11T5160: firewall refactor: change firewall ip to firewall ipv4Nicolas Fort
2023-08-11T5160: firewall refactor: new cli structure. Update only all xmlNicolas Fort
2023-07-31T5014: fix conflicts. Add code for redirection, which is causing conflicts. C...Nicolas Fort