Revisions of shorewall

buildservice-autocommit accepted request 316608 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 209)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 316607 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 208)
- Update to version 4.6.11 For more details see changelog.txt and
  releasenotes.txt
  * Previously, when the -c option was given to the 'compile'
    command, the progress message "Compiling..." was issued before
    it was determined if compilation was necessary.  Now, that message
    is suppressed when re-compilation is not required.
  * Previously, when the -c option was given to the 'compile'
    command, the 'postcompile' extension script was executed even when
    there was no (re-)compilation. Now, the 'postcompile' script is
    only invoked  when a new script is generated.
  * If CONFDIR was other than /etc, then ordinary users would not 
    receive a clear error message when they attempted to execute
    one of the commands that change the firewall state.
  * Previously, IPv4 DHCP client broadcasts were blocked by the
    'rpfilter' interface option. That has been corrected.
  * The 'update' command incorrectly added the INLINE_MATCHES
    option to shorewall6.conf with a default value of 'Yes'. This
    caused 'start' to fail with invalid ip6tables rules when the alternate
    input format using ';' is used.
    Note: This last issue is not documented in the release notes
    included with the release.
buildservice-autocommit accepted request 313364 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 207)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 312379 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 206)
- Update to version 4.6.10.1 For more details see changelog.txt and
  releasenotes.txt
  * Indentation is now consistent in lib.core (Tuomo Soini).
  * The first problem corrected in 4.6.10 below was incomplete. It
    is now complete (Tuomo Soini).
  * Similarly, the second fix was also incomplete and is now
    completed  (Tuomo Soini).
buildservice-autocommit accepted request 305795 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 205)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 305794 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 204)
- Update to version 4.6.9 For more details see changelog.txt and
  releasenotes.txt
  * This release contains defect repair from Shorewall 4.6.8.1 and
    earlier releases.
  * The means for preventing loading of helper modules has been
    clarified in the documentation.
  * The SetEvent and ResetEvent actions previously set/reset the
    event even if the packet did not match the other specified
    columns. This has been corrected.
  * Previously, the 'show capabilities' command was ignoring the
    HELPERS setting. This resulted in unwanted modules being
    autoloaded  and, when the -f option was given, an incorrect
    capabilities file was generated.
  * Previously, when 'wait' was specified for an interface, the
    generated script erroneously checked for required interfaces on
    all commands rather than just start, restart and restore.
buildservice-autocommit accepted request 296593 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 203)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 296592 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 202)
- Update to version 4.6.8.1 For more details see changnlog.txt and
  releasenotes.txt
  * Previously, when servicd was installed and there were one or
    more required interfaces, the firewall would fail to start at
    boot.This has been corrected by Tuomo Soini.
  * Some startup logic in lib.cli has been deleted. A bug prevented
    the code from working as intended, so there is no loss of 
    functionality resulting from deletion of the code.
buildservice-autocommit accepted request 294499 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 201)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 294498 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 200)
- Update to version 4.6.8 For more details see changelog.txt and
  releasenotes.txt
  * This release includes defect repair from Shorewall 4.6.6.2 and
    earlier releases.
  * Previously, when the -n option was specified and NetworkManager
    was installed on the target system, the Shorewall-init installer
    would still create
    ${DESTDIR}etc/NetworkManager/dispatcher.d/01-shorewall, regardless
    of the setting of $CONFDIR. That has been corrected such that
    the directory
    ${DESTDIR}${CONFDIR}/NetworkManager/dispatcher.d/01-shorewall
    is created instead.
  * Previously, handling of the IPTABLES and IP6TABLES actions in
    the conntrack file was broken. nfw provided a fix on IRC.
  * The Shorewall-core and Shorewall6 installers would previously
    report incorrectly that the product release was not installed.
    Matt Darfeuille provided fixes.
buildservice-autocommit accepted request 290982 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 199)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 290980 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 198)
- Update to version 4.6.7 For more details see changelog.txt and
  releasenotes.txt
  * This release includes defect repair from Shorewall 4.6.6.2 and
    earlier releases.
  * The 'tunnels' file now supports 'tinc' tunnels.
  * Previously, the SAME action in the mangle file had a fixed
    timeout of 300 seconds (5 minutes). That action now allows
    specification of a different timeout.
  * It is now possible to add or delete addresses from an ipset
    with entries in the mangle file. The ADD and DEL actions have
    the same behavior in the mangle file as they do in the rules
    file. 
- Added systemd_version macro in anticipation of detecting the
  correct service file when systemd version is >= 214
buildservice-autocommit accepted request 284605 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 197)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 284604 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 196)
- Update to version 4.6.6.2 For more details see changelog.txt and
  releasenotes.txt
  * The compiler failed to parse the construct +<ipset>[n] where n is
    an integer (e.g., +bad[2]).
  * Orion Paplawski has provided a patch that adds 'ko.xz' to the
    default MODULE_SUFFIX setting. This change deals with recent
    Fedora releases where the module names now end with ".ko.xz".
    In addition to Orion's patch, the sample configurations have
    been modified to specify MODULE_SUFFIX="ko ko.xz".
buildservice-autocommit accepted request 282634 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 195)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 282633 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 194)
- Update to version 4.6.6.1 For more details see changelog.txt and
  releasenotes.txt
  * Previously the SAVE and RESTORE actions were erroneously disallowed
    in the INPUT chain within the mangle file.
  * The manpage descriptions of the mangle SAVE and RESTORE actions
    incorrectly required a slash (/) prior to the mask value.
  * Race conditions could previously occur between the 'start'
    command and the 'enable' and 'disable' commands.
  * The 'update' command incorrectly added the INLINE_MATCHES
    option to shorewall.conf with a default value of 'Yes'. This
    caused 'start' to fail with invalid iptables rules when the
    alternate input format using ';' is used.
  * Previously the LOCKFILE setting was not propagated to the
    generated script. So when the script was run directly, the script
    unconditionally used ${VARDIR}/lock.
buildservice-autocommit accepted request 281597 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 193)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 281596 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 192)
- Update to version 4.6.6 For more details see changlelog.txt and
  releasenotes.txt As there are many new features with this release
  please consult the mentioned files.
  * Previously, a line beginning with 'shell' was interpreted as a
    shell script. Now, the line must begin with 'SHELL'
    (case-sensitive).
    Note that ?SHELL and BEGIN SHELL are still case-insensitive.
buildservice-autocommit accepted request 280861 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 191)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 280859 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 190)
- Update to version 4.6.5.5 For more details see changelog.txt and
  releasenotes.txt
  * This release adds Tuomo Soini's fix for Shorewall-init to 4.6.5.5.
    Previously, the ifupdown scripts were looking in the wrong
    directory for the firewall script.
Displaying revisions 81 - 100 of 289
openSUSE Build Service is sponsored by