Revisions of shorewall

Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 244630 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 169)
- Backport
  0001-Modify-the-preceding-fix-to-work-with-wildcard-inter.patch
  as the previous patch broke some configurations
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 244269 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 168)
- Backported PHYSICALNAME.patch
buildservice-autocommit accepted request 243939 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 167)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 243938 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 166)
- Update to version 4.6.2.4 For more details see changelog.txt and
  releasenotes.txt
  
  + Previously, inline matches were not allowed in action files, even
    though the documentation stated that they were allowed.
buildservice-autocommit accepted request 242813 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 165)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 242812 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 164)
- Update to version 4.6.2.3 For more details see changelog.txt and
  releasenotes.txt
  * Previously, the compiler would fail with a Perl diagnostic if:
    + Optimize Level 8 was enabled.
    + Perl 5.20 was being used. This is the current Perl version on
      Arch Linux.
    The diagnostic was:
      Can't use string ("nat") as a HASH ref while "strict refs" in
      use at /usr/share/shorewall/Shorewall/Chains.pm line 3486.
buildservice-autocommit accepted request 242439 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 163)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 242438 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 162)
- Update to version 4.6.2.2 For more details see changelog.txt and
  releasenotes.txt
  * The compiler now correctly detects the IPv6 "Header Match"
    capability when LOAD_MODULES_ONLY=No.
  * The compiler now correctly detects the IPv6 "Ipset Match"
    capability on systems running a 3.14 or later kernel.
  * The compiler now correctly detects "Arptables JF" capability
    when LOAD_MODULES_ONLY=No.
  * The tcfilter manpages previously failed to mention that
    BASIC_FILTERS=Yes is required to use ipsets in the tcfilters
    files.
buildservice-autocommit accepted request 241676 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 161)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 241675 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 160)
- Update to version 4.6.2.1 For more details see changelog.txt and
  releasenotes.txt
  * Two issues with tcrules processing have been corrected:
    + SAVE and RESTORE generated fatal compilation errors.
    + '|' and '&' were ignored. That issue is also present in the
      processing of the mangle file
  * Version 4.6.2 changes
    + The DSCP match in the mangle and tcrules files didn't work
      with service class names such as EF, BE, CS1, ... 
    + The SAVE and RESTORE actions were disallowed in the OUTPUT
      chain in tcrules and mangle; this was a regression from 4.5.21.
    + Additional ports required by Asus, Supermicro and Dell have
      beenadded to the IPMI macro (Tuomo Soini).
    +  Some issues regarding install under Cygwin64 have been
       addressed.
      - configure.pl did not understand CYGWIN returned from `uname`
      - Shorewall-core install.sh did not understand CYGWIN returned
        from  `uname`.
      - The Shorewall and Shorewall6 installers tried to run the
        command 'mkdir -p //etc/shorewall[6]' which is broken in the
        current Cygwin64.
buildservice-autocommit accepted request 240826 from Factory Maintainer's avatar Factory Maintainer (factory-maintainer) (revision 159)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 239725 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 158)
- Update to version 4.6.1.4 For more details see changelog.txt and
  releasenotes.txt
 * The DSCP match in the mangle and tcrles files didn't work with
    service class names such as EF, BE, CS1, ... (Thibaut Chèze)
 * The SAVE and RESTORE actions were disallowed in the OUTPUT
   chain in tcrules and mangle; this was a regression from 4.5.21.
buildservice-autocommit accepted request 239258 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 157)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 239257 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 156)
- Update to version 4.6.1.3 For more details see changelog.txt and
  releasenotes.txt
  * Use of the 'IfEvent' action resulted in a compilation failure:
     ERROR: -j is only allowed when the ACTION is INLINE with no
     parameter /usr/share/shorewall/action.IfEvent (line 139)
     from /etc/shorewall/action.SSHKnock (line 8)
     from /etc/shorewall/rules (line 31)
buildservice-autocommit accepted request 238055 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 155)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 238054 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 154)
- Update to version 4.6.1.1 For more details see changelog.txt and
  releasenotes.txt
  * An improved error message is generatred when a server address
    list is specified in the DEST colume of a DNAT or REDIRECT
    rule. At one time, iptables supported such lists, but now only
    a single address or an address range is supported.
    The previous error message was:
    ERROR: Unkknown Host (192.168.1.4,192.168.1.22)
    The new error message is:
    ERROR: An address list (192.168.1.4,192.1688.1.22) is not
       allowed in the DEST column of a xxx RULE
    whenere xxx is DNAT or REDIRECT as appropriate.
  * Two problems have been corrected in the Shorewall-init Debian
    init script.
   + A cosmetic problem which releasenotessulted in 'echo_notdone'
     being displayed on failure rather than 'nott done'.
   + More seriously, the test for the existance of compiled
     firewall scripts was incorrect, with the result that the
     firewallingall scripts were not executed.
     These defects, introduced in Shorewall 4.5.17, have now been
     corrected. 
- Restating that CHECKSUM.patch is removed since braindead
  factory-auto scripts do not understand previous comment
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 236788 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 152)
- Update to version 4.6.1 For more details see changelog.txt and
  releasenotes.txt
  * The release notes in the packages mention a fix for
    'rpfilter'. That defect was actually corrected in 4.5.6.9 with
     a slightly different description in the release notes.
  * Tuomo Soini has provided new macros for AMOP, MongoDB, Redis,
   Sieve and IPMI (RMCP).
buildservice-autocommit accepted request 236004 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 151)
baserev update by copy to link target
Togan Muftuoglu's avatar Togan Muftuoglu (toganm) accepted request 236003 from Togan Muftuoglu's avatar Togan Muftuoglu (toganm) (revision 150)
- Update to version 4.6.0.3 For more details see changelog.txt and
  releasenotes.txt
  * 1:1 NAT is now enabled in IPv6.
  * subtle interaction between NAT and sub-zones is explained in
    shorewall-nat.
  * The 'show filters' command now works with Simple TC.
Displaying revisions 121 - 140 of 289
openSUSE Build Service is sponsored by