<feed xmlns='http://www.w3.org/2005/Atom'>
<title>vyos-1x.git/interface-definitions/include/firewall, branch current</title>
<subtitle>VyOS command definitions, scripts, and utilities (mirror of https://github.com/vyos/vyos-1x.git)
</subtitle>
<id>https://git.amelek.net/vyos/vyos-1x.git/atom?h=current</id>
<link rel='self' href='https://git.amelek.net/vyos/vyos-1x.git/atom?h=current'/>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/'/>
<updated>2025-06-17T15:16:51+00:00</updated>
<entry>
<title>firewall: T6951:  Add a configuration command for ethertypes that bridge firewalls should always accept</title>
<updated>2025-06-17T15:16:51+00:00</updated>
<author>
<name>Nataliia Solomko</name>
<email>natalirs1985@gmail.com</email>
</author>
<published>2025-06-13T09:20:40+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=8dbc3c5e67cc1fd043a78dd3446a1a733ebd814f'/>
<id>urn:sha1:8dbc3c5e67cc1fd043a78dd3446a1a733ebd814f</id>
<content type='text'>
</content>
</entry>
<entry>
<title>T7523: firewall: Accepting invalid traffic for pppoe discovery and wol</title>
<updated>2025-06-05T04:25:21+00:00</updated>
<author>
<name>opswill</name>
<email>will@nixops.org</email>
</author>
<published>2025-06-05T04:04:10+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=bfdba4079b0a76a8c578277adae3f36add832b41'/>
<id>urn:sha1:bfdba4079b0a76a8c578277adae3f36add832b41</id>
<content type='text'>
</content>
</entry>
<entry>
<title>T7512: firewall: Modify accepting invalid traffic for VLAN aware bridge</title>
<updated>2025-06-02T04:52:08+00:00</updated>
<author>
<name>Indrajit Raychaudhuri</name>
<email>irc@indrajit.com</email>
</author>
<published>2025-06-02T04:32:13+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=b47adae7a3e963bfca3b775f4b84d5121907c76d'/>
<id>urn:sha1:b47adae7a3e963bfca3b775f4b84d5121907c76d</id>
<content type='text'>
Allow accepting invalid packets for ethernet types `8021q` and `8021ad`
in addition to ARP and UDP types so that stateful bridge firewall works
for VLAN-aware bridges in addition to regular bridges.
</content>
</entry>
<entry>
<title>xml: T7467: remove ^/$ wrapping from validation regexes</title>
<updated>2025-05-20T12:54:06+00:00</updated>
<author>
<name>Daniil Baturin</name>
<email>daniil@baturin.org</email>
</author>
<published>2025-05-20T12:54:06+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=de7af067e8a62471437d97c96de2078cdbe22b0a'/>
<id>urn:sha1:de7af067e8a62471437d97c96de2078cdbe22b0a</id>
<content type='text'>
since the validation utility adds them implicitly
</content>
</entry>
<entry>
<title>T7386: firewall: allow mix of IPv4 and IPv6 addresses/prefixes/ranges in remote groups</title>
<updated>2025-05-07T14:55:00+00:00</updated>
<author>
<name>Mark Hayes</name>
<email>mark.hayes0338@gmail.com</email>
</author>
<published>2025-04-25T15:10:07+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=02c63e7ded23ea90d55638f768ff943671c2c574'/>
<id>urn:sha1:02c63e7ded23ea90d55638f768ff943671c2c574</id>
<content type='text'>
</content>
</entry>
<entry>
<title>firewall: T7358: add offload option to global state policy</title>
<updated>2025-04-16T18:49:44+00:00</updated>
<author>
<name>l0crian1</name>
<email>ryan.claridge13@gmail.com</email>
</author>
<published>2025-04-16T16:31:34+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=382c6fc6ffe76d7ce418018f69902572701215a3'/>
<id>urn:sha1:382c6fc6ffe76d7ce418018f69902572701215a3</id>
<content type='text'>
Since the jump to the global state chain is inserted before all rules,
it wasn't possible to use offload with the global state policies

This commit adds a new chain for offloaded traffic in the forward
chain and jumps to that chain. Please enter the commit message for your changes. Lines starting
</content>
</entry>
<entry>
<title>firewall: T5493: Implement remote-group</title>
<updated>2025-03-21T20:08:50+00:00</updated>
<author>
<name>Alex W</name>
<email>embezzle.dev@proton.me</email>
</author>
<published>2025-01-30T20:22:41+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=9e2bdc96ea63e7ee1adb002df17e0d9ecc1cd410'/>
<id>urn:sha1:9e2bdc96ea63e7ee1adb002df17e0d9ecc1cd410</id>
<content type='text'>
</content>
</entry>
<entry>
<title>T6918: Fix punctuation</title>
<updated>2024-12-17T03:03:53+00:00</updated>
<author>
<name>opswill</name>
<email>will@nixops.org</email>
</author>
<published>2024-12-17T03:03:53+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=833d5866b69dc346d8127845f32ebdcf9b647e59'/>
<id>urn:sha1:833d5866b69dc346d8127845f32ebdcf9b647e59</id>
<content type='text'>
Co-authored-by: Daniil Baturin &lt;daniil@baturin.org&gt;</content>
</entry>
<entry>
<title>T6918: Accept invalid PPPoE Session in stateful bridge firewall.</title>
<updated>2024-12-13T07:50:06+00:00</updated>
<author>
<name>opswill</name>
<email>root@opswill.com</email>
</author>
<published>2024-12-13T03:25:01+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=c94dabede31447f3d1eaded08b448f944087539d'/>
<id>urn:sha1:c94dabede31447f3d1eaded08b448f944087539d</id>
<content type='text'>
</content>
</entry>
<entry>
<title>xml: T6430: add re-usable vrf CLI node for firewall and pbr</title>
<updated>2024-10-07T15:17:42+00:00</updated>
<author>
<name>Christian Breunig</name>
<email>christian@breunig.cc</email>
</author>
<published>2024-10-07T15:13:14+00:00</published>
<link rel='alternate' type='text/html' href='https://git.amelek.net/vyos/vyos-1x.git/commit/?id=9c291d115d987cc635d1ef56898119c7d2bdfee6'/>
<id>urn:sha1:9c291d115d987cc635d1ef56898119c7d2bdfee6</id>
<content type='text'>
</content>
</entry>
</feed>
