index
:
vyatta-cfg-firewall.git
bug6860
crux
current
daisy
equuleus
glendale
helium
hollister
hollywood
hydrogen
hydrogen-test
islavista
jenner
kenwood
larkspur
lithium
master
mendocino
napa
napa-dev
oxnard
oxnard-nat-enhancements
pacifica
pbr
upstream
Configuration templates and scripts for the firewall subsystem. (mirror of https://github.com/vyos/vyatta-cfg-firewall.git)
summary
refs
log
tree
commit
diff
log msg
author
committer
range
path:
root
/
scripts
Age
Commit message (
Expand
)
Author
2010-03-18
Fix firewall group parent delete while still referenced.
Stig Thormodsrud
2010-03-17
Fix 5453: can't delete "address" under "firewall group <> address-group <>"
Stig Thormodsrud
2010-03-05
Fix firewall conntrack teardown.
Stig Thormodsrud
2010-02-15
Fix 5227: firewall group config can get out of sync with ipset
Stig Thormodsrud
2010-02-02
Remove old Xorp template
Stephen Hemminger
2009-09-22
Bugfix 4951: Don't fail if IPv6 kernel module is not loaded.
Bob Gilligan
2009-08-07
* Fix Bug 3625 Firewall protocol option should have a selection for TCP and UDP
Mohit Mehta
2009-07-31
Another attempt to fix 4760.
Stig Thormodsrud
2009-07-31
Fix 4683: Firewall Rule number maximum 1024 reached
Stig Thormodsrud
2009-06-14
Fix 4581: Firewall name issue causes failed commit
Stig Thormodsrud
2009-06-02
Change firewall default-policy to default-action.
Stig Thormodsrud
2009-05-27
explicitly set conntrack table size to 16384 on system boot
Mohit Mehta
2009-05-11
Add 'reject' as a configurable value for default-policy
Mohit Mehta
2009-05-08
Fix Bug 4388 firewall name shouldn't have been set after commit failed
Mohit Mehta
2009-05-08
Bugfix 4340: Enable net.netfilter.nf_conntrack_tcp_be_liberal by default.
Bob Gilligan
2009-05-05
* don't allow user to create a chain that exists in the system. This may be
Mohit Mehta
2009-05-01
* setup table only for specific tree, not both filter and mangle
Mohit Mehta
2009-04-27
outlaw applying firewall to an interface that is defined under a zone
Mohit Mehta
2009-04-27
Disable firewall debuging by default.
Stig Thormodsrud
2009-04-24
enable/disable conntrack separately for ipv4/ipv6
Stig Thormodsrud
2009-04-24
Move setup/teardown out from top-level firewall node.
Stig Thormodsrud
2009-04-13
Add conntrack and post firewall hooks for IPv6.
Bob Gilligan
2009-04-13
Fix bug where an empty firewall rule deletes the default drop policy.
Stig Thormodsrud
2009-04-13
Move firewall "end" processing down to each table.
Stig Thormodsrud
2009-04-09
Add ability for firename to select default policy.
Stig Thormodsrud
2009-04-08
Fix faulty search loop.
Stig Thormodsrud
2009-04-07
Apply interface firewalls to separate VYATTA_(IN|OUT)_HOOK.
Stig Thormodsrud
2009-03-27
Revert "Allow user configurable default-policy on firewall."
Stig Thormodsrud
2009-03-27
Allow user configurable default-policy on firewall.
Stig Thormodsrud
2009-03-12
Doing strict ES won't work for router
Stephen Hemminger
2009-03-12
Don't use -P
Stephen Hemminger
2009-03-12
Enable strict host matching
Stephen Hemminger
2009-03-04
Don't attempt to delete ruleset from "other" trees
Bob Gilligan
2009-02-24
Allow IPv6 firewall rulesets to be configured on an interface independent of ...
Bob Gilligan
2009-02-15
Add support for ranges in firewall group address & port.
Stig Thormodsrud
2009-02-13
Add description and references to "show firewall group".
Stig Thormodsrud
2009-02-13
Add show-set to display all sets.
Stig Thormodsrud
2009-02-13
Add support for "show firewall group".
Stig Thormodsrud
2009-02-09
Add back parameter that was dropped when converting to use run_cmd().
Stig Thormodsrud
2009-02-06
Add carriage return to error message.
Stig Thormodsrud
2009-02-06
Add validation of group type.
Stig Thormodsrud
2009-02-04
Delete commented out code.
Stig Thormodsrud
2009-02-03
Turn on strict checking and fix warnings
Stephen Hemminger
2009-02-02
Add 1st pass of firewall group support (ipset netfilter module
Stig Thormodsrud
2009-01-29
Use iptables comment to identify CLI rule numbers in iptables output
Mohit Mehta
2009-01-23
Bugfix 4062: Don't reference parameters outside the config tree.
Bob Gilligan
2009-01-21
Initial support for IPv6.
Bob Gilligan
2008-12-03
fix for perl module reorganization
An-Cheng Huang
2008-11-24
Convert VyattaConfig to Vyatta::Config
Stephen Hemminger
2008-11-21
Rename VyattaIpTablesRule to Vyatta::IpTables::Rule
Stephen Hemminger
[next]