Age | Commit message (Collapse) | Author |
|
|
|
Add dependency on iptables.
Don't build the cfg-serial package and don't generate templates for it,
serial interfaces support is long dead.
Generate templates for dummy interfaces.
|
|
|
|
Add SNPT and DNPT firewall hooks and load ip6t_NPT kernel module (#387)
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Signed-off-by: Daniil Baturin <daniil@baturin.org>
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
ipset now supports adding ranges natively. Deletion still requires
deleting every member in this version though.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
so it's possible to use firewall groups in it. Fix suggested by Cesar Fazan.
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Adds call to vyatta-firewall-trap.pl to end action of firewall
nodes.
|
|
When a firewall configuration change is made, and trap can be
generated to track who changed the configuration and what the
configuration change was.
|
|
|
|
|
|
(cherry picked from commit 6870e3d05f62ceecf4824f551861106409761b35)
|
|
|
|
|
|
(cherry picked from commit 5853281f2c8514a40608b1e83eca65e4c25aae00)
|
|
|
|
(cherry picked from commit caae72ccbf2c7f77c637cc51096546404ea8c837)
|
|
|