Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | firewall: Remove obsoleted ULA-border rule | Steven Barth | 2013-05-13 | 2 | -20/+1 |
| | | | | SVN-Revision: 36622 | ||||
* | firewall: fix logging rule regression (#12999) | Jo-Philipp Wich | 2013-02-22 | 2 | -2/+2 |
| | | | | SVN-Revision: 35745 | ||||
* | firewall: various enhancements | Jo-Philipp Wich | 2013-02-04 | 7 | -97/+133 |
| | | | | | | | | | | | | - reduce mssfix related log spam (#10681) - separate src and dest terminal chains (#11453, #12945) - disable per-zone custom chains by default, they're rarely used Additionally introduce options "device", "subnet", "extra", "extra_src" and "extra_dest" to allow defining zones not related to uci interfaces, e.g. to match "ppp+" or any tcp traffic to and from a specific port. SVN-Revision: 35484 | ||||
* | firewall: flush conntrack table after changing interface rules | Jo-Philipp Wich | 2013-01-28 | 2 | -2/+5 |
| | | | | SVN-Revision: 35348 | ||||
* | firewall: Add ULA site border for IPv6 traffic This prevents private traffic ↵ | Steven Barth | 2013-01-04 | 2 | -1/+20 |
| | | | | | | from leaking out to the internet SVN-Revision: 35012 | ||||
* | firewall: fix typo in reflection hotplug script | Jo-Philipp Wich | 2012-12-07 | 2 | -2/+2 |
| | | | | SVN-Revision: 34569 | ||||
* | firewall: extend nat reflection support | Jo-Philipp Wich | 2012-12-04 | 2 | -86/+123 |
| | | | | | | | | - use comment match to keep track of per-network rules - setup reflection for any interface which is part of a masqueraded zone, not just "wan" - delete per-network reflection rules if network is brought down SVN-Revision: 34472 | ||||
* | packages: sort network related packages into package/network/ | Felix Fietkau | 2012-10-10 | 17 | -0/+1885 |
SVN-Revision: 33688 |