<feed xmlns='http://www.w3.org/2005/Atom'>
<title>vyatta-cfg-firewall.git/scripts/firewall, branch lithium</title>
<subtitle>Configuration templates and scripts for the firewall subsystem. (mirror of https://github.com/vyos/vyatta-cfg-firewall.git)
</subtitle>
<id>https://git.amelek.net/vyos/vyatta-cfg-firewall.git/atom?h=lithium</id>
<link rel='self' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/atom?h=lithium'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/'/>
<updated>2018-06-24T10:34:31+00:00</updated>
<entry>
<title>Merge branch 'current' into lithium</title>
<updated>2018-06-24T10:34:31+00:00</updated>
<author>
<name>Daniil Baturin</name>
<email>daniil@baturin.org</email>
</author>
<published>2018-06-24T10:34:31+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=fbc72527765b236a65740cd5d9f7f2c3f7e9a87e'/>
<id>urn:sha1:fbc72527765b236a65740cd5d9f7f2c3f7e9a87e</id>
<content type='text'>
Conflicts:
	debian/changelog
</content>
</entry>
<entry>
<title>Task T35 - enable prune-deleted-sets for inet6 family firewall templates</title>
<updated>2018-04-19T07:57:25+00:00</updated>
<author>
<name>Marian Tudosoiu</name>
<email>marian.tudosoiu@1and1.ro</email>
</author>
<published>2018-04-19T07:57:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=7272364a23c9f00f17f719c1efee756d960e8984'/>
<id>urn:sha1:7272364a23c9f00f17f719c1efee756d960e8984</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Task T35 - fixing prune_deleted_sets for inet6 family</title>
<updated>2018-04-11T08:13:14+00:00</updated>
<author>
<name>Marian Tudosoiu</name>
<email>marian.tudosoiu@1and1.ro</email>
</author>
<published>2018-04-11T08:13:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=f6e4c60702f810cc06449782f64c7e5a7e20abb2'/>
<id>urn:sha1:f6e4c60702f810cc06449782f64c7e5a7e20abb2</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Task T35 change to place ipv6 address-groups and network groups under group config tree</title>
<updated>2018-03-14T08:27:25+00:00</updated>
<author>
<name>Marian Tudosoiu</name>
<email>marian.tudosoiu@1and1.ro</email>
</author>
<published>2018-03-14T08:27:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=65410961b33a072addf91dce7879f6a734aa2187'/>
<id>urn:sha1:65410961b33a072addf91dce7879f6a734aa2187</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Task T35 - add support for IPv6 firewall adddress and network groups</title>
<updated>2018-03-12T10:34:35+00:00</updated>
<author>
<name>Marian Tudosoiu</name>
<email>marian.tudosoiu@1and1.ro</email>
</author>
<published>2018-03-12T10:34:35+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=03f1937e7dcb01ce810c9c19eda15149245f4537'/>
<id>urn:sha1:03f1937e7dcb01ce810c9c19eda15149245f4537</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Bug #T171 fix Open Task T171 Unable to Delte Rule</title>
<updated>2018-02-19T11:06:25+00:00</updated>
<author>
<name>mtudosoiu</name>
<email>marian.tudosoiu@1and1.ro</email>
</author>
<published>2018-02-19T11:06:25+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=d1164b989295016436f20caa709603ec5d85a4d3'/>
<id>urn:sha1:d1164b989295016436f20caa709603ec5d85a4d3</id>
<content type='text'>
</content>
</entry>
<entry>
<title>update the way status of snmpd is called</title>
<updated>2017-04-27T14:37:01+00:00</updated>
<author>
<name>Kim</name>
<email>UnicronNL@users.noreply.github.com</email>
</author>
<published>2017-04-27T14:37:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=c903db0a63b627e1cdfa91ded522c73abb3b0516'/>
<id>urn:sha1:c903db0a63b627e1cdfa91ded522c73abb3b0516</id>
<content type='text'>
</content>
</entry>
<entry>
<title>Revert "vyatta-cfg-firewall: update nfct commands to use the new syntax"</title>
<updated>2016-05-20T09:33:06+00:00</updated>
<author>
<name>Kim Hagen</name>
<email>kim.sidney@gmail.com</email>
</author>
<published>2016-05-20T09:33:06+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=6e46ac599ac8351a72d227ae3b96f6e8ed9452f7'/>
<id>urn:sha1:6e46ac599ac8351a72d227ae3b96f6e8ed9452f7</id>
<content type='text'>
Debian jessie version still uses older syntax

This reverts commit 8c08408d1309b2664067b3a793d7df3b24d36cf3.
</content>
</entry>
<entry>
<title>Remove dead code from the IPset module.</title>
<updated>2015-12-22T20:37:23+00:00</updated>
<author>
<name>Daniil Baturin</name>
<email>daniil@baturin.org</email>
</author>
<published>2015-12-22T20:37:23+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=feb23d3cf032d623dcf5d8da781f1e9166164171'/>
<id>urn:sha1:feb23d3cf032d623dcf5d8da781f1e9166164171</id>
<content type='text'>
Slightly related to #628.
</content>
</entry>
<entry>
<title>vyatta-cfg-firewall: check rules for errors before processing them</title>
<updated>2015-11-28T20:00:46+00:00</updated>
<author>
<name>Alex Harpin</name>
<email>development@landsofshadow.co.uk</email>
</author>
<published>2015-11-28T20:00:46+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyatta-cfg-firewall.git/commit/?id=14bed3ad112362ecf9fabc0bd5d5ecbeef96dd0d'/>
<id>urn:sha1:14bed3ad112362ecf9fabc0bd5d5ecbeef96dd0d</id>
<content type='text'>
Errors in firewall rules can cause either rules to be overwritten
(completely or partially), dropped entirely, or just ending up with an
inconsistent state in comparison to the current configuration.  This
can lead to unpredictable firewall results, which can't even be
corrected by deleting all the firewall rules, only a reboot or manual
intervention will correct the issue.

Checking these rules for consistency in a separate loop before they are
applied allows the errors to flagged up and the commit failed before
the iptables are touched.

Bug #623 http://bugzilla.vyos.net/show_bug.cgi?id=623
</content>
</entry>
</feed>
