firewall: improve ipset support
authorKevin Darbyshire-Bryant <ldir@darbyshire-bryant.me.uk>
Fri, 16 Aug 2019 09:05:12 +0000 (10:05 +0100)
committerJo-Philipp Wich <jo@mein.io>
Wed, 4 Sep 2019 11:39:57 +0000 (13:39 +0200)
commitfcab45af13f9d479d66f42635877789260997cd6
treead4cb8cde5ce79064251cc825ba5358493837f2e
parentf783ad5b5b105407fd47123b02217a8a09525b44
firewall: improve ipset support

Bump to latest git HEAD

509e673 firewall3: Improve ipset support

The enabled option did not work properly for ipsets, as it was not
checked on create/destroy of a set. After this commit, sets are only
created/destroyed if enabled is set to true.

Add support for reloading, or recreating, ipsets on firewall reload.  By
setting "reload_set" to true, the set will be destroyed and then
re-created when the firewall is reloaded.

Add support for the counters and comment extensions. By setting
"counters" or "comment" to true, then counters or comments are added to
the set.

Signed-off-by: Kevin Darbyshire-Bryant <ldir@darbyshire-bryant.me.uk>
(cherry picked from commit 51ffce069424f86e894369cee5cd327dd503db5f)
package/network/config/firewall/Makefile