summaryrefslogtreecommitdiff
AgeCommit message (Collapse)Author
2010-09-100.13.17debian/0.13.17Mohit Mehta
2010-09-10Fix Bug 5309 Allow modifyining TCP MSS optionMohit Mehta
* add the ability to modify TCP MSS value using modify|ipv6-modify rulesets
2010-09-080.13.16debian/0.13.16An-Cheng Huang
2010-09-08add Replaces field for vyatta-cfg-firewall-serialAn-Cheng Huang
2010-09-070.13.15debian/0.13.15Stephen Hemminger
2010-09-07Merge branch 'mendocino' of suva.vyatta.com:/git/vyatta-cfg-firewall into ↵Stephen Hemminger
mendocino
2010-09-020.13.14debian/0.13.14An-Cheng Huang
2010-08-310.13.13debian/0.13.13Stig Thormodsrud
2010-08-31Fix 6125: iptables errors on boot up of mendocinoStig Thormodsrud
Shorten chain from VYATTA_PRE_CT_PREROUTING_HOOK to VYATTA_CT_PREROUTING_HOOK
2010-08-26Split serial templates into separate packageStephen Hemminger
Only SE version should get templates for serial devices.
2010-08-170.13.12debian/0.13.12An-Cheng Huang
2010-08-17remove low-level config dir usageAn-Cheng Huang
2010-08-170.13.11debian/0.13.11An-Cheng Huang
2010-08-17update help text to use val_helpAn-Cheng Huang
2010-08-170.13.10debian/0.13.10Stig Thormodsrud
2010-08-17Fix 5917: FW: Max characters exceeded for ipset rule when using "set firewallStig Thormodsrud
group address-group" command - handle special case where temp group begins with a '-'. (cherry picked from commit fa22559d3baa7ae5443f14e0ff774c4d6a49cc36)
2010-08-17fix bug 6055 firewall rule help strings are confusingMohit Mehta
* add val_help for firewall rule nodes (cherry picked from commit 0a1eb7471e1ec478b2eb22200ab5fc42eaba1e8e)
2010-08-17fix range in help strings for count parameter under recentMohit Mehta
(cherry picked from commit 3210dfe5d41f926840fd9ee6981a9fa89534cfd7)
2010-08-160.13.9debian/0.13.9An-Cheng Huang
2010-08-16remove low-level config dir usageAn-Cheng Huang
2010-08-110.13.8debian/0.13.8An-Cheng Huang
2010-08-11get rid of lintian warningsAn-Cheng Huang
2010-08-11remove CLI backend env variables usageAn-Cheng Huang
* use the new cli-shell-api instead.
2010-07-270.13.7-94debian/0.13.7-94Stig Thormodsrud
2010-07-27Fix 5917: FW: Max characters exceeded for ipset rule when using "set ↵Stig Thormodsrud
firewall group address-group" command (cherry picked from commit 37638769fdaf40c5882eef3614e02f0aadbb1bba)
2010-07-27Convert firewall rules to val_help:Stephen Hemminger
Convert some (but not all) of existing rules using comp_help: to use val_help: (cherry picked from commit 77e13fa992a50cc5721bbad64235bff8f8ecd50d)
2010-07-220.13.7-93debian/0.13.7-93An-Cheng Huang
2010-07-210.13.7-92debian/0.13.7-92Mohit Mehta
2010-07-21undo verb usage at the start of help stringsMohit Mehta
2010-07-150.13.7-91debian/0.13.7-91Mohit Mehta
2010-07-15Fix bug 4629 configuration limit of recent count firewall rule is 20Mohit Mehta
* raise recent count limit to 255. add syntax check to disallow invalid values
2010-07-130.13.7-90debian/0.13.7-90Mohit Mehta
2010-07-13Fix Bug 5744 unable to use firewall group with recent match conditionMohit Mehta
* use --match-set instead of --set for ipset match * re-arrange rules when ipset and recent match are used together. instead of appending recent match conditions to the rule; place them before ipset match conditions * add debugging output to look at generated rules
2010-06-120.13.7-89debian/0.13.7-89Stig Thormodsrud
2010-06-12Dont tear down conntrack if the other table is using it.Stig Thormodsrud
2010-06-120.13.7-88debian/0.13.7-88Stig Thormodsrud
2010-06-12Dont create FW_CONNTRACK if it already exists.Stig Thormodsrud
2010-06-110.13.7-87debian/0.13.7-87Stig Thormodsrud
2010-06-11Add support for firewall enable-default-log.Stig Thormodsrud
2010-06-110.13.7-86debian/0.13.7-86Stig Thormodsrud
2010-06-11Fix ipt_disable_conntrack() to delete correct chain.Stig Thormodsrud
2010-06-100.13.7-85debian/0.13.7-85Stig Thormodsrud
2010-06-10Infrastruction needed for bug 5583.Stig Thormodsrud
2010-05-310.13.7-84debian/0.13.7-84Bob Gilligan
2010-05-31Bugfix 5632: Add ability to configure SIP UDP port numbers.Bob Gilligan
2010-05-200.13.7-83debian/0.13.7-83Mohit Mehta
2010-05-20need to restart conntrackd when conntrack table size changesMohit Mehta
2010-05-170.13.7-82debian/0.13.7-82Mohit Mehta
2010-05-17Fix Bug 5588 Add ability to modify conntrack expectation table sizeMohit Mehta
* added 'firewall conntrack-expect-table-size' to modify expect table's size * added 'firewall conntrack-hash-size' to set hash size for conntrack table
2010-05-060.13.7-81debian/0.13.7-81Stephen Hemminger