1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
373
374
375
376
377
378
379
380
381
382
383
384
385
386
387
388
389
390
391
392
393
394
395
396
397
398
399
400
401
402
403
404
405
406
407
408
409
410
411
412
413
414
415
416
417
418
419
420
421
422
423
424
425
426
427
428
429
430
431
432
433
434
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459
460
461
462
463
464
465
466
467
468
469
470
471
472
473
474
475
476
477
478
479
480
481
482
483
484
485
486
487
488
489
490
491
492
493
494
495
496
497
498
|
vyatta-nat (0.12.36) unstable; urgency=low
* Bug #7655: add both leading and trailing spaces to iptables
-- Daniil Baturin <daniil.baturin@vyatta.com> Wed, 18 Apr 2012 21:34:26 +0700
vyatta-nat (0.12.35) unstable; urgency=low
* use negation before -p <protocol> as per new iptables upgrade
-- Gaurav Sinha <gaurav.sinha@vyatta.com> Fri, 13 Apr 2012 16:45:58 -0700
vyatta-nat (0.12.34) unstable; urgency=low
* new branch
-- Deepti Kulkarni <deepti@vyatta.com> Sat, 03 Mar 2012 02:26:06 -0800
vyatta-nat (0.12.33) unstable; urgency=low
[ Mohit Mehta ]
* Test push to oxnard-nat-enhancements branch
[ Daniil Baturin ]
* Change NAT config version to 4.
* Bug 5681: Templates changed to move NAT out of service branch,
"service/nat" -> "nat".
* Bug 5681: Change vyatta-update-nat.pl to correspond new
configuration path out of service branch.
* Fix config version file path in automake rules.
* Modify NAT configuration templates to support "any" inbound-
interface and outbound-interface.
* Add "any" inbound/outbound interface support to NatRule.pm
* Bug 4946: Modify NAT templates not to issue a warning when eth+ or
other interface group name suitable for NAT is specified as inboud
or outbound interface.
* Remove old NAT rule templates
* Add templates for source NAT
* Add templates for destination NAT
* Fix description in vyatta-update-nat.pl
* Bug 7353: Fix completion for NAT rule protocol option
* Bug 5682: Remove old NatRule.pm module now splitted into source and
destination parts
* Bug 5682: Add NatRuleCommon.pm module with subroutines common
* Bug 5682: Add DstNatRule.pm module for destination NAT rules
processing
* Bug 5682: Add SrcNatRule.pm module for source NAT rules processing
* Bug 5682: Remove old vyatta-update-nat.pl script now splitted into
* Bug 5682: Add vyatta-update-dst-nat.pl script for destination NAT
* Bug 5682: Add vyatta-update-src-nat.pl script for source NAT rules
update.
* Bug 5682: Add masquerade option to source NAT rule outside-address
* Bug 5682: Remove common NAT update script call from templates,
* Bug 5682: Update Automake rules to correspond changes
* Fix file description for destination NAT update script.
* Rename "inside-address" and "outside-address" to "translation"
* Impove "translation address/port" help strings
* Delete old templates of outside/inside address nodes
* Update rule handling modules to correspond "outside/inside-address -
> translation" change
* Fix help string for destination NAT rule translation port
* Fix help string for source NAT translation port
* Update log prefixes to match new design spec.
* Bug #3888: Issue a warning message if source NAT translation address
* Add completion for "translation address masquerade" option.
* Update error messages to match "outside/inside-address"-
>"translation
* Update vyatta-show-nat-rules.pl to match CLI syntax changes.
* Fix extra line break when rule condition is empty.
* Update op mode templates for "show nat <source|destination> rules".
* Bug #6365: Display rule description in "show nat * rules" output.
* Fix rule prefix display for rules that are masquerade and exclude
* Fix formatting in "show nat * rules".
* Update op mode templates for "clear nat * counters".
* Update clear counters script to match CLI changes.
* Bug #6617: fix counters flush for rules with logging.
* Update templates for "show nat <source|destination> statistics".
* Update show NAT statistics script to match CLI changes,
* Update automake rules to match vyatta-show-nat.pl ->
* Update op mode templates for "show nat <source|destination>
* Update vyatta-nat-translation.pl to match CLI changes.
* Remove XSL files that are unused now.
* Update automake rule to reflect removal of XSL files.
* Don't display translation address for masquerade rules
* Don't display masquerade rule code help for destination rules.
-- Daniil Baturin <daniil.baturin@vyatta.com> Wed, 04 Jan 2012 01:14:44 +0700
vyatta-nat (0.12.32) unstable; urgency=low
* new branch
-- Deepti Kulkarni <deepti@vyatta.com> Thu, 07 Jul 2011 20:57:29 -0700
vyatta-nat (0.12.31) unstable; urgency=low
* new branch
-- An-Cheng Huang <ancheng@vyatta.com> Tue, 28 Dec 2010 13:50:01 -0800
vyatta-nat (0.12.30) unstable; urgency=low
* remove linda override
* update gitignore rules
-- Stephen Hemminger <stephen.hemminger@vyatta.com> Fri, 26 Nov 2010 11:12:07 -0800
vyatta-nat (0.12.29) unstable; urgency=low
* UNRELEASED
-- An-Cheng Huang <ancheng@vyatta.com> Thu, 02 Sep 2010 18:29:34 -0700
vyatta-nat (0.12.28) unstable; urgency=low
* update help text to use val_help
-- An-Cheng Huang <ancheng@vyatta.com> Tue, 17 Aug 2010 15:31:29 -0700
vyatta-nat (0.12.27) unstable; urgency=low
* UNRELEASED
-- An-Cheng Huang <ancheng@vyatta.com> Thu, 22 Jul 2010 17:24:51 -0700
vyatta-nat (0.12.26) unstable; urgency=low
* Use comp_help to give back info that was removed in prior val_help
commit.
-- Stig Thormodsrud <stig@vyatta.com> Wed, 21 Jul 2010 17:07:43 -0700
vyatta-nat (0.12.25) unstable; urgency=low
* Convert to using new ipv4range and negatates.
-- Stig Thormodsrud <stig@vyatta.com> Wed, 21 Jul 2010 10:48:36 -0700
vyatta-nat (0.12.24) unstable; urgency=low
* Clean up helps strings for NAT.
* Change comp_help to val_help.
-- Stig Thormodsrud <stig@vyatta.com> Tue, 20 Jul 2010 17:25:28 -0700
vyatta-nat (0.12.23) unstable; urgency=low
* up NAT priority to being right after firewall as done in Jenner -
see BZ 5026
-- Mohit Mehta <mohit.mehta@vyatta.com> Mon, 12 Jul 2010 15:30:23 -0700
vyatta-nat (0.12.22) unstable; urgency=low
* Change nat to use IpTables::Mgr to enable/disable conntrack.
-- Stig Thormodsrud <stig@vyatta.com> Thu, 10 Jun 2010 15:07:08 -0700
vyatta-nat (0.12.21) unstable; urgency=low
* start fresh for each conntrack call
-- Mohit Mehta <mohit.mehta@vyatta.com> Thu, 10 Jun 2010 13:52:27 -0700
vyatta-nat (0.12.20) unstable; urgency=low
* * make 'show nat translations' cmnds work with conntrack-tools
0.9.14
-- Mohit Mehta <mohit.mehta@vyatta.com> Thu, 10 Jun 2010 11:39:48 -0700
vyatta-nat (0.12.19) unstable; urgency=low
* Fix 5574: NAT Rule number maximum 1024 needs to be increased
-- Stig Thormodsrud <stig@vyatta.com> Fri, 21 May 2010 17:49:01 -0700
vyatta-nat (0.12.18) unstable; urgency=low
* use "existing-interfaces" for enumeration
-- An-Cheng Huang <ancheng@vyatta.com> Fri, 14 May 2010 17:42:00 -0700
vyatta-nat (0.12.17) unstable; urgency=low
* Change DNAT to use index 2 to skip over VYATTA_PRE_DNAT_HOOK.
-- Stig Thormodsrud <stig@vyatta.com> Fri, 09 Apr 2010 14:57:49 -0700
vyatta-nat (0.12.16) unstable; urgency=low
* Fix nat conntrack teardown.
-- Stig Thormodsrud <stig@vyatta.com> Fri, 05 Mar 2010 11:47:56 -0800
vyatta-nat (0.12.15) unstable; urgency=low
* UNRELEASED
-- An-Cheng Huang <ancheng@vyatta.com> Wed, 17 Feb 2010 16:14:48 -0800
vyatta-nat (0.12.14) unstable; urgency=low
* fix bug 4115 'clear nat translations' does not clear nat
translations
-- Mohit Mehta <mohit.mehta@vyatta.com> Wed, 03 Feb 2010 18:27:16 -0800
vyatta-nat (0.12.13) unstable; urgency=low
* partial fix for bug 4115 'clear nat translations' does not clear nat
translations
-- Mohit Mehta <mohit.mehta@vyatta.com> Tue, 02 Feb 2010 16:46:34 -0800
vyatta-nat (0.12.12) unstable; urgency=low
* added required keyword to help text.
-- Michael Larson <slioch@slioch.vyatta.com> Mon, 30 Nov 2009 16:35:38 -0800
vyatta-nat (0.12.11) unstable; urgency=low
* dependency update
-- Michael Larson <slioch@slioch.vyatta.com> Fri, 13 Nov 2009 13:55:44 -0800
vyatta-nat (0.12.10) unstable; urgency=low
* pushed priority to node.def
-- slioch <slioch@eng-140.vyatta.com> Tue, 20 Oct 2009 16:14:26 -0700
vyatta-nat (0.12.9) unstable; urgency=low
* * Fix Bug 1445 - Allow setting protocols tcp and udp in one rule
-- Mohit Mehta <mohit.mehta@vyatta.com> Wed, 05 Aug 2009 12:35:28 -0700
vyatta-nat (0.12.8) unstable; urgency=low
* add support for disabling a NAT rule
-- Mohit Mehta <mohit.mehta@vyatta.com> Fri, 24 Jul 2009 14:20:37 -0700
vyatta-nat (0.12.7) unstable; urgency=low
* * add check to make sure source|destination address is a subnet with
the
-- Mohit Mehta <mohit.mehta@vyatta.com> Mon, 01 Jun 2009 17:10:33 -0700
vyatta-nat (0.12.6) unstable; urgency=low
* UNRELEASED
-- An-Cheng Huang <ancheng@vyatta.com> Fri, 29 May 2009 18:36:21 -0700
vyatta-nat (0.12.5) unstable; urgency=low
* Add log option to NAT rules.
-- Stig Thormodsrud <stig@vyatta.com> Mon, 20 Apr 2009 13:58:44 -0700
vyatta-nat (0.12.4) unstable; urgency=low
* Fix 4107: nat inside-address port doesn't allow name of port
-- Stig Thormodsrud <stig@io.vyatta.com> Mon, 09 Feb 2009 10:24:12 -0800
vyatta-nat (0.12.3) unstable; urgency=low
* Fix statistics in "show nat statistics" when target is NETMAP
* Script to generate a new output for the "show nat rules" command
* Fix Bug 3401 some indication is needed for the excluded rules in
the "show nat rules" result
-- Mohit Mehta <mohit.mehta@vyatta.com> Fri, 23 Jan 2009 12:06:49 -0800
vyatta-nat (0.12.2) unstable; urgency=low
* UNRELEASED
* Fix Bug 3287 Add the ability to configure the iptables "NETMAP"
target via the CLI
-- Mohit Mehta <mohit.mehta@vyatta.com> Tue, 20 Jan 2009 15:49:16 -0800
vyatta-nat (0.12.1) unstable; urgency=low
[ An-Cheng Huang ]
* add support for development build
[ Stephen Hemminger ]
* Rename VyattaNatRule to Vyatta::NatRule
* Convert to Vyatta::
* VyattaConfig -> Vyatta::Config
* extra space causes error
* Update to new naming Vyatta::IpTables:AddressFilter
* change VyattaNatRule to Vyatta::NatRule
[ Mohit Mehta ]
* Fix Bug 3887 Generate a warning message when NAT inbound/outbound-
interface does not match a configured interface
[ An-Cheng Huang ]
* update maintainer information
* "files" file should be removed before package build
-- An-Cheng Huang <ancheng@vyatta.com> Thu, 08 Jan 2009 09:36:32 -0800
vyatta-nat (0.12) unstable; urgency=low
3.2.0
[ Mark O'Brien ]
[ An-Cheng Huang ]
* fix for bug 3717: enforce interface restrictions
[ Stig Thormodsrud ]
* Fix "show nat translation monitor" to work with both snat & dnat.
[ An-Cheng Huang ]
* fix for bug 3858: skip the PRE_SNAT_HOOK rule in stats output.
* fix for bug 3636: change output format
[ Stig Thormodsrud ]
* Add dependency on libxml-simple-perl
[ An-Cheng Huang ]
* fix for bug 3717: generate error messages when inbound-interface is
set
[ Stig Thormodsrud ]
* Don't flush the nat table since other features now add nat rules.
[ An-Cheng Huang ]
* fix index for NAT PREROUTING chain
* fix for bug 3622: add pre-SNAT hook
[ Stig Thormodsrud ]
* Fix typo.
* Use unbuffered writes in pipe mode.
* Disable pager on "show nat translations monitor".
* Tweak "show nat translations" headings.
* Fix 522: Feature Request: add "show nat translations" command to
list active NAT translations.
[ Mark O'Brien ]
-- Mark O'Brien <mobrien@firebolt.vyatta.com> Tue, 25 Nov 2008 19:09:49 -0800
vyatta-nat (0.11) unstable; urgency=low
3.1.2
[ Mark O'Brien ]
[ An-Cheng Huang ]
* fix for bug 3289: add rule description
[ Mark O'Brien ]
-- Mark O'Brien <mobrien@firebolt.vyatta.com> Wed, 23 Jul 2008 21:36:05 -0700
vyatta-nat (0.10) unstable; urgency=low
3.1.0
[ Mark O'Brien ]
[ rbalocca ]
* Ignore derived files
[ An-Cheng Huang ]
* fix for bug 3249: disallow multiport if both source and destination
ports
* fix for bug 3248: "exclude" now works with "source" and
"destination" types.
* fix for bug 3246: show error message when NAT rule has no "type".
[ rbalocca ]
* Convert to our method of changelog creation
[ Mohit Mehta ]
* Fix Bug 3069 Help strings should be standardized
[ Mark O'Brien ]
-- Mark O'Brien <mobrien@firebolt.vyatta.com> Tue, 17 Jun 2008 09:27:00 -0700
vyatta-nat (0.9) unstable; urgency=low
3.0.5
-- Mark O'Brien <mobrien@vyatta.com> Tue, 06 May 2008 12:43:26 -0700
vyatta-nat (0.8) unstable; urgency=low
3.0.4
-- Mark O'Brien <mobrien@vyatta.com> Mon, 05 May 2008 16:40:46 -0700
vyatta-nat (0.7) unstable; urgency=low
3.0.3
[ Mark O'Brien ]
[ rbalocca ]
* Indicate the VC4.0.2 release candidate in the changelog
[ Mark O'Brien ]
-- Mark O'Brien <mobrien@vyatta.com> Tue, 29 Apr 2008 16:42:30 -0700
vyatta-nat (0.6) unstable; urgency=low
VC4.0.2
-- Mark O'Brien <mobrien@vyatta.com> Sat, 19 Apr 2008 11:56:13 -0700
vyatta-nat (0.5) unstable; urgency=low
VC4.0.2 release candidate
-- Mark O'Brien <mobrien@vyatta.com> Wed, 16 Apr 2008 09:50:15 -0700
vyatta-nat (0.4) unstable; urgency=low
3.0.2
[ Mark O'Brien ]
* 3.0.1
[ rbalocca ]
* Fix debian dependencies
* Set dependencies on either bash or vyatta-bash
[ Mark O'Brien ]
-- Mark O'Brien <mobrien@vyatta.com> Fri, 04 Apr 2008 18:00:55 -0700
vyatta-nat (0.3) unstable; urgency=low
VC4.0.1
[ Mark O'Brien ]
[ An-Cheng Huang ]
* fix for bug 2963: handle "KMG" counter representations.
* fix for bug 2975: add sudo for "iptables -L"
[ Stephen Hemminger ]
* fix non-root iptables usage in nat
* Replace VPL with GPLv2
* Update from VPL1.0 to GPLv2
[ Mark O'Brien ]
-- Mark O'Brien <mobrien@vyatta.com> Tue, 18 Mar 2008 19:04:37 -0700
vyatta-nat (0.2) unstable; urgency=low
vc4.0.0
[ Mark O'Brien ]
[ An-Cheng Huang ]
* convert templates to new syntax
* fix for bug 2591: update help text
* fix for bug 2590: "protocols" -> "protocol"
* fix for bug 2528: collapse source/destination "address" and
"network".
* fix for bug 2791: merge port configuration options.
* move common function to vyatta-cfg
* merge ports in show output
* make show output consistent with firewall
* merge address range into address
* add address validation
* use common implementation of source/destination handling for NAT and
firewall.
* add error checking for show command
* fix clear commands for operator level
[ Mark O'Brien ]
-- Mark O'Brien <mobrien@vyatta.com> Mon, 25 Feb 2008 17:39:08 -0800
vyatta-nat (0.1) unstable; urgency=low
* Initial Release.
-- An-Cheng Huang <ancheng@vyatta.com> Tue, 18 Dec 2007 11:59:49 -0700
|