summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2010-08-170.13.10debian/0.13.10Stig Thormodsrud
2010-08-17Fix 5917: FW: Max characters exceeded for ipset rule when using "set firewallStig Thormodsrud
group address-group" command - handle special case where temp group begins with a '-'. (cherry picked from commit fa22559d3baa7ae5443f14e0ff774c4d6a49cc36)
2010-08-17fix bug 6055 firewall rule help strings are confusingMohit Mehta
* add val_help for firewall rule nodes (cherry picked from commit 0a1eb7471e1ec478b2eb22200ab5fc42eaba1e8e)
2010-08-17fix range in help strings for count parameter under recentMohit Mehta
(cherry picked from commit 3210dfe5d41f926840fd9ee6981a9fa89534cfd7)
2010-08-160.13.9debian/0.13.9An-Cheng Huang
2010-08-16remove low-level config dir usageAn-Cheng Huang
2010-08-110.13.8debian/0.13.8An-Cheng Huang
2010-08-11get rid of lintian warningsAn-Cheng Huang
2010-08-11remove CLI backend env variables usageAn-Cheng Huang
* use the new cli-shell-api instead.
2010-07-270.13.7-94debian/0.13.7-94Stig Thormodsrud
2010-07-27Fix 5917: FW: Max characters exceeded for ipset rule when using "set ↵Stig Thormodsrud
firewall group address-group" command (cherry picked from commit 37638769fdaf40c5882eef3614e02f0aadbb1bba)
2010-07-27Convert firewall rules to val_help:Stephen Hemminger
Convert some (but not all) of existing rules using comp_help: to use val_help: (cherry picked from commit 77e13fa992a50cc5721bbad64235bff8f8ecd50d)
2010-07-220.13.7-93debian/0.13.7-93An-Cheng Huang
2010-07-210.13.7-92debian/0.13.7-92Mohit Mehta
2010-07-21undo verb usage at the start of help stringsMohit Mehta
2010-07-150.13.7-91debian/0.13.7-91Mohit Mehta
2010-07-15Fix bug 4629 configuration limit of recent count firewall rule is 20Mohit Mehta
* raise recent count limit to 255. add syntax check to disallow invalid values
2010-07-130.13.7-90debian/0.13.7-90Mohit Mehta
2010-07-13Fix Bug 5744 unable to use firewall group with recent match conditionMohit Mehta
* use --match-set instead of --set for ipset match * re-arrange rules when ipset and recent match are used together. instead of appending recent match conditions to the rule; place them before ipset match conditions * add debugging output to look at generated rules
2010-06-120.13.7-89debian/0.13.7-89Stig Thormodsrud
2010-06-12Dont tear down conntrack if the other table is using it.Stig Thormodsrud
2010-06-120.13.7-88debian/0.13.7-88Stig Thormodsrud
2010-06-12Dont create FW_CONNTRACK if it already exists.Stig Thormodsrud
2010-06-110.13.7-87debian/0.13.7-87Stig Thormodsrud
2010-06-11Add support for firewall enable-default-log.Stig Thormodsrud
2010-06-110.13.7-86debian/0.13.7-86Stig Thormodsrud
2010-06-11Fix ipt_disable_conntrack() to delete correct chain.Stig Thormodsrud
2010-06-100.13.7-85debian/0.13.7-85Stig Thormodsrud
2010-06-10Infrastruction needed for bug 5583.Stig Thormodsrud
2010-05-310.13.7-84debian/0.13.7-84Bob Gilligan
2010-05-31Bugfix 5632: Add ability to configure SIP UDP port numbers.Bob Gilligan
2010-05-200.13.7-83debian/0.13.7-83Mohit Mehta
2010-05-20need to restart conntrackd when conntrack table size changesMohit Mehta
2010-05-170.13.7-82debian/0.13.7-82Mohit Mehta
2010-05-17Fix Bug 5588 Add ability to modify conntrack expectation table sizeMohit Mehta
* added 'firewall conntrack-expect-table-size' to modify expect table's size * added 'firewall conntrack-hash-size' to set hash size for conntrack table
2010-05-060.13.7-81debian/0.13.7-81Stephen Hemminger
2010-05-06Make sure perl packages load successfullyStephen Hemminger
Standard practice is to end package module with 1;
2010-04-16Merge branch 'larkspur' of suva.vyatta.com:/git/vyatta-cfg-firewall into ↵Stephen Hemminger
larkspur
2010-04-16add input interface templatesStephen Hemminger
2010-04-090.13.7-80debian/0.13.7-80Stig Thormodsrud
2010-04-09Add VYATTA_PRE_DNAT_HOOK in nat PREROUTING table.Stig Thormodsrud
2010-03-240.13.7-79debian/0.13.7-79Stig Thormodsrud
2010-03-24Fix 5203: negation in firewall rule causes deprecation messageStig Thormodsrud
2010-03-180.13.7-78debian/0.13.7-78Stig Thormodsrud
2010-03-18Fix firewall group parent delete while still referenced.Stig Thormodsrud
2010-03-170.13.7-77debian/0.13.7-77Stig Thormodsrud
2010-03-17Fix 5453: can't delete "address" under "firewall group <> address-group <> "Stig Thormodsrud
2010-03-170.13.7-76debian/0.13.7-76Stig Thormodsrud
2010-03-17Fix 5453: can't delete "address" under "firewall group <> address-group <>"Stig Thormodsrud
2010-03-050.13.7-75debian/0.13.7-75Stig Thormodsrud