aboutsummaryrefslogtreecommitdiffstats
path: root/package/network/config/firewall
Commit message (Collapse)AuthorAgeFilesLines
...
* Drop legacy firewall packageJo-Philipp Wich2013-06-0417-1961/+0
| | | | SVN-Revision: 36837
* firewall: Remove obsoleted ULA-border ruleSteven Barth2013-05-132-20/+1
| | | | SVN-Revision: 36622
* firewall: fix logging rule regression (#12999)Jo-Philipp Wich2013-02-222-2/+2
| | | | SVN-Revision: 35745
* firewall: various enhancementsJo-Philipp Wich2013-02-047-97/+133
| | | | | | | | | | | | - reduce mssfix related log spam (#10681) - separate src and dest terminal chains (#11453, #12945) - disable per-zone custom chains by default, they're rarely used Additionally introduce options "device", "subnet", "extra", "extra_src" and "extra_dest" to allow defining zones not related to uci interfaces, e.g. to match "ppp+" or any tcp traffic to and from a specific port. SVN-Revision: 35484
* firewall: flush conntrack table after changing interface rulesJo-Philipp Wich2013-01-282-2/+5
| | | | SVN-Revision: 35348
* firewall: Add ULA site border for IPv6 traffic This prevents private traffic ↵Steven Barth2013-01-042-1/+20
| | | | | | from leaking out to the internet SVN-Revision: 35012
* firewall: fix typo in reflection hotplug scriptJo-Philipp Wich2012-12-072-2/+2
| | | | SVN-Revision: 34569
* firewall: extend nat reflection supportJo-Philipp Wich2012-12-042-86/+123
| | | | | | | | - use comment match to keep track of per-network rules - setup reflection for any interface which is part of a masqueraded zone, not just "wan" - delete per-network reflection rules if network is brought down SVN-Revision: 34472
* packages: sort network related packages into package/network/Felix Fietkau2012-10-1017-0/+1885
SVN-Revision: 33688