| Commit message (Expand) | Author | Age | Files | Lines |
* | firewall: - support alias ifnames different from parent ifname - properly han... | Jo-Philipp Wich | 2010-06-02 | 1 | -10/+23 |
* | firewall: Initial alias interface support. This allows to define zones coveri... | Jo-Philipp Wich | 2010-06-01 | 2 | -28/+85 |
* | firewall: change the order of IPv4/IPv6 address detection, fixes mixed notati... | Jo-Philipp Wich | 2010-05-31 | 2 | -2/+2 |
* | firewall: fix support for netranges in redirect and rule sections | Jo-Philipp Wich | 2010-05-30 | 3 | -7/+7 |
* | firewall: count rules per chain and family, fix wrong order of ip6tables rule... | Jo-Philipp Wich | 2010-05-22 | 1 | -4/+4 |
* | firewall: don't apply default udp/68 rule to ip6tables | Jo-Philipp Wich | 2010-05-19 | 1 | -0/+1 |
* | firewall: - fix ip6tables rules when icmp_type option is set - add "family" o... | Jo-Philipp Wich | 2010-05-19 | 6 | -40/+104 |
* | firewall: add commented disable_ipv6 option to default config | Jo-Philipp Wich | 2010-05-19 | 1 | -0/+2 |
* | firewall: implement disable_ipv6 uci option | Jo-Philipp Wich | 2010-05-19 | 2 | -5/+11 |
* | firewall (#7355) - partially revert r21486, start firewall on init again - sk... | Jo-Philipp Wich | 2010-05-19 | 4 | -26/+11 |
* | firewall: fix a possible deadlock when the firewall config has syntax errors ... | Jo-Philipp Wich | 2010-05-18 | 1 | -2/+4 |
* | firewall: use uci_get_state() wrapper | Jo-Philipp Wich | 2010-05-17 | 1 | -1/+1 |
* | firewall: properly clear hooks in fw_stop() to prevent extensions from being ... | Jo-Philipp Wich | 2010-05-17 | 1 | -1/+8 |
* | firewall: - defer firewall start until the first interface is brought up by h... | Jo-Philipp Wich | 2010-05-17 | 3 | -6/+20 |
* | firewall: properly unset position for delete command, fixes rule removal in i... | Jo-Philipp Wich | 2010-05-05 | 1 | -2/+2 |
* | firewall: fix bug in iface hotplug handler | Jo-Philipp Wich | 2010-05-05 | 1 | -1/+1 |
* | firewall: - replace uci firewall with a modular dual stack implementation dev... | Jo-Philipp Wich | 2010-05-01 | 14 | -539/+1016 |
* | allow ping | Travis Kemen | 2010-03-18 | 1 | -0/+7 |
* | firewall: insert rules at the beginning of chains again while maintaining non... | Jo-Philipp Wich | 2010-03-02 | 1 | -1/+4 |
* | firewall: fix bad number error in fw_redirect() (#6704) | Jo-Philipp Wich | 2010-02-20 | 1 | -3/+3 |
* | Add destination ip of the wan adapter useful if you have multiple ip addresses. | Travis Kemen | 2010-02-11 | 1 | -0/+2 |
* | firewall: fix a race condition preventing interfaces from being added to the ... | Jo-Philipp Wich | 2010-01-19 | 1 | -2/+6 |
* | firewall: fix fallout from r18716 (fixes #6338) | Felix Fietkau | 2009-12-10 | 1 | -1/+3 |
* | firewall: get rid of recursive shell script inclusion to improve hush compati... | Felix Fietkau | 2009-12-09 | 2 | -37/+46 |
* | firewall: initialize dest_port with src_dport if omitted in redirect sections... | Jo-Philipp Wich | 2009-12-01 | 1 | -21/+21 |
* | firewall: fix zone defaults | Felix Fietkau | 2009-10-11 | 1 | -2/+19 |
* | firewall: do not process rules in reverse | Felix Fietkau | 2009-10-10 | 1 | -1/+1 |
* | firewall: fix MSS issue affection RELATED new connections (closes: #5173) | Nicolas Thill | 2009-09-27 | 2 | -4/+4 |
* | firewall: add sanity checks to zone default rules (patch from #5459) | Felix Fietkau | 2009-09-24 | 1 | -3/+3 |
* | firewall: move the config_get out of the loop, no need to call it multiple times | Jo-Philipp Wich | 2009-09-14 | 1 | -2/+3 |
* | firewall: properly dispatch delif events if the network has a different name ... | Jo-Philipp Wich | 2009-09-14 | 1 | -1/+1 |
* | firewall: emit hotplug events for interface add/remove | Felix Fietkau | 2009-08-26 | 1 | -0/+2 |
* | firewall: allow incoming udp/68 packets in the default configuration (#4108, ... | Jo-Philipp Wich | 2009-08-13 | 1 | -0/+8 |
* | firewall: add icmp_type option to specify the icmp type in rule sections, bum... | Jo-Philipp Wich | 2009-08-03 | 1 | -0/+3 |
* | fix typo in the uci firewall script | Florian Fainelli | 2009-05-26 | 1 | -1/+1 |
* | firewall: automatically set up NOTRACK rules to disable connection tracking f... | Felix Fietkau | 2009-05-14 | 1 | -13/+43 |
* | firewall: process custom rules after forwardings and redirects, this actually... | Jo-Philipp Wich | 2009-04-19 | 1 | -2/+2 |
* | firewall: enable /etc/firewall.user by default and install sample firewall.us... | Jo-Philipp Wich | 2009-04-12 | 2 | -4/+8 |
* | re-enable the mss fix by default for now - see discussion at http://lists.ope... | Felix Fietkau | 2009-01-31 | 1 | -5/+1 |
* | firewall: don't clear the mangle table at startup or stop - it doesn't use it... | Felix Fietkau | 2009-01-20 | 1 | -4/+0 |
* | firewall: introduce drop_invalid option to allow disabling the invalid state ... | Jo-Philipp Wich | 2009-01-16 | 1 | -7/+10 |
* | firewall: allow multiple interfaces to be part of one zone, fix the sanity ch... | Felix Fietkau | 2009-01-16 | 2 | -39/+52 |
* | firewall: clear the MSSFIX rules | Felix Fietkau | 2009-01-02 | 1 | -0/+1 |
* | Unify portrange-support in firewall rule generator fixes #4404 | Steven Barth | 2009-01-01 | 1 | -0/+10 |
* | disable the MSS fixup hack by default (most ISPs don't require this as a work... | Felix Fietkau | 2008-12-31 | 2 | -1/+9 |
* | fixes firewall for trunk, custom chains were never reched, as policies apply ... | John Crispin | 2008-10-14 | 1 | -3/+3 |
* | fixes firewall rule generation. forwarding rules were inserted in input chain... | John Crispin | 2008-09-28 | 1 | -3/+6 |
* | custom chains were never reached on DROP/REJECT policy, fixes #4004 #4029 | John Crispin | 2008-09-28 | 1 | -3/+3 |
* | set default input policy to ACCEPT to bring the firewall behavior closer to t... | Felix Fietkau | 2008-09-28 | 1 | -1/+1 |
* | firewall: fix default policies, add a check for duplicate defaults sections a... | Felix Fietkau | 2008-09-28 | 1 | -18/+34 |