Anton Engelhardt
|
9d7f49df47
redurects: add support to define multiple zones for dnat reflection rules
|
%!s(int64=6) %!d(string=hai) anos |
Kristian Evensen
|
509e673dab
firewall3: Improve ipset support
|
%!s(int64=5) %!d(string=hai) anos |
Jo-Philipp Wich
|
12a7cf9db1
Add support for DSCP matches and target
|
%!s(int64=6) %!d(string=hai) anos |
Alin Nastac
|
d2bbeb7d42
firewall3: make reject types selectable by user
|
%!s(int64=6) %!d(string=hai) anos |
Pierre Lebleu
|
08b2c61b4d
helpers: make the proto field as a list rather than one option
|
%!s(int64=6) %!d(string=hai) anos |
Felix Fietkau
|
35b3e74a18
defaults: add support for setting --hw on the xt_FLOWOFFLOAD rule
|
%!s(int64=6) %!d(string=hai) anos |
Jo-Philipp Wich
|
c1a295a500
defaults: add support for xt_FLOWOFFLOAD rule
|
%!s(int64=6) %!d(string=hai) anos |
Jo-Philipp Wich
|
41c2ab5e5c
ipsets: add support for specifying entries
|
%!s(int64=6) %!d(string=hai) anos |
Stijn Tintel
|
a3ef503ed5
zones: allow per-table log control
|
%!s(int64=6) %!d(string=hai) anos |
Jo-Philipp Wich
|
f50a524847
helpers: implement explicit CT helper assignment support
|
%!s(int64=6) %!d(string=hai) anos |
Jo-Philipp Wich
|
e751cde895
zones: drop outgoing invalid traffic in masqueraded zones
|
%!s(int64=7) %!d(string=hai) anos |
Jo-Philipp Wich
|
13698aafb5
global: remove automatic notrack rules
|
%!s(int64=8) %!d(string=hai) anos |
Ralph Sennhauser
|
6015fc0761
musl-compat: avoid kernel header conflicts
|
%!s(int64=8) %!d(string=hai) anos |
Jo-Philipp Wich
|
be8ead27f6
treewide: replace jow@openwrt.org with jo@mein.io
|
%!s(int64=8) %!d(string=hai) anos |
Jo-Philipp Wich
|
1d0bd45db0
ubus: print rule name when reporting errors
|
%!s(int64=9) %!d(string=hai) anos |
Jo-Philipp Wich
|
2807cc26b8
Selectively flush conntrack
|
%!s(int64=10) %!d(string=hai) anos |
Jo-Philipp Wich
|
bba31cce05
Use netmasks instead of prefix lengths internally
|
%!s(int64=10) %!d(string=hai) anos |
Steven Barth
|
e678dcbf03
Add support for netifd-generated rules
|
%!s(int64=10) %!d(string=hai) anos |
Steven Barth
|
2f392a3b91
Add support for device and direction parameters
|
%!s(int64=10) %!d(string=hai) anos |
Steven Barth
|
1097a30f1d
snat: add support for connlimiting port-range SNAT
|
%!s(int64=10) %!d(string=hai) anos |
Jo-Philipp Wich
|
31456301f5
Initial support for "config nat" rules - this allows configuring zone-independant SNAT and MASQUERADE rules
|
%!s(int64=10) %!d(string=hai) anos |
Jo-Philipp Wich
|
c114b1e380
Treat option tcp_ecn as integer, not bool
|
%!s(int64=11) %!d(string=hai) anos |
Jo-Philipp Wich
|
3b4303ddcf
Change fw3_parse_options() to indicate whether all options where parsed successfully
|
%!s(int64=11) %!d(string=hai) anos |
Jo-Philipp Wich
|
9d900a9f86
Treat redirects as port redirections if the specified dest_ip belongs to the router itself, this is a compatibility fix to firewall2.
|
%!s(int64=11) %!d(string=hai) anos |
Jo-Philipp Wich
|
d4980027ea
Implement limit and limit_burst options for rules.
|
%!s(int64=11) %!d(string=hai) anos |
Jo-Philipp Wich
|
3a3d85b3c7
Extend ipset option syntax to support specifying directions inplace.
|
%!s(int64=11) %!d(string=hai) anos |
Jo-Philipp Wich
|
ea46bc485f
Mark fw3_address objects that got resolved by fw3_parse_network()
|
%!s(int64=11) %!d(string=hai) anos |
Jo-Philipp Wich
|
f12271d15d
Rename struct fw3_rule_spec to struct fw3_chain_spec and move the declaration to options.h
|
%!s(int64=11) %!d(string=hai) anos |
Jo-Philipp Wich
|
1fbc7b77f4
Remove now unused fw3_format_*() functions
|
%!s(int64=11) %!d(string=hai) anos |
Jo-Philipp Wich
|
6b27a6665c
Drop iptables-restore and create rules through libiptc and libxtables
|
%!s(int64=11) %!d(string=hai) anos |