index
:
firewall3
master
OpenWrt firewall configuration utility
summary
refs
log
tree
commit
diff
stats
log msg
author
committer
range
Age
Commit message (
Expand
)
Author
2015-01-08
firewall3: fix left shift on 64 bit systems in fw3_bitlen2netmask
Ulrich Weber
2015-01-08
redirects: respect src_dip option for reflection rules
Jo-Philipp Wich
2014-09-19
options: allow '*' as value for protocols and families
Jo-Philipp Wich
2014-09-18
utils: rework fw3_bitlen2netmask() IPv6 mask calculation
Jo-Philipp Wich
2014-09-17
redirect: emit -j REDIRECT rules for local port forwards
Jo-Philipp Wich
2014-09-17
utils: fix invalid memory access in fw3_bitlen2netmask()
Jo-Philipp Wich
2014-08-11
utils: ifa_addr may be NULL, skip such entries
Jo-Philipp Wich
2014-08-11
Selectively flush conntrack
Jo-Philipp Wich
2014-07-21
zones: make forward policy destination bound
Jo-Philipp Wich
2014-07-19
options: fix logic flaw when parsing ipaddr/mask notation
Jo-Philipp Wich
2014-07-19
Use netmasks instead of prefix lengths internally
Jo-Philipp Wich
2014-07-10
ubus: handle attribute access after NULL check in parse_subnets()
Jo-Philipp Wich
2014-07-10
ubus: fix fw3_ubus_address()
Jo-Philipp Wich
2014-07-10
ubus: fix fw3_ubus_device() to only return a pointer if a device was found
Jo-Philipp Wich
2014-07-03
options: fix fw3_parse_network() when destination pointer is not a list
Jo-Philipp Wich
2014-07-02
ubus: add support for fetching firewall rules from procd
Felix Fietkau
2014-06-30
ubus: use blobmsg_parse to validate device attributes and decouple the found device name from the order in which elements appear
Felix Fietkau
2014-06-30
make fw3_ubus_address take a list_head * argument instead of allocating & returning one
Felix Fietkau
2014-06-30
use calloc instead of malloc+memset
Felix Fietkau
2014-06-30
ubus: use blobmsg_parse to validate data from network.interface:dump
Felix Fietkau
2014-06-26
Add fw3 zone call to list devices in a zone
Steven Barth
2014-04-14
Add support for netifd-generated rules
Steven Barth
2014-04-14
Add support for device and direction parameters
Steven Barth
2014-04-14
snat: add support for connlimiting port-range SNAT
Steven Barth
2014-04-14
Fix building with newer toolchains
Steven Barth
2014-04-14
snat: ICMP can be port-natted as well
Steven Barth
2014-04-14
nat: allow ACCEPT-target to explicitely disable NAT
Steven Barth
2014-04-11
Reapply SNAT/MASQUERADE rules on firewall reloads
Jo-Philipp Wich
2014-04-06
Initial support for "config nat" rules - this allows configuring zone-independant SNAT and MASQUERADE rules
Jo-Philipp Wich
2014-03-20
utils: define _GNU_SOURCE to get clearenv()
Felix Fietkau
2014-02-21
Several ipset bugfixes
Jo-Philipp Wich
2013-12-17
Change set_default() to take value as integer, required for tcp_ecn > 1
Jo-Philipp Wich
2013-12-17
Treat option tcp_ecn as integer, not bool
Jo-Philipp Wich
2013-12-17
Properly check strtol() results when paring values as integers
Jo-Philipp Wich
2013-11-18
Clean up dead code
Jo-Philipp Wich
2013-11-18
Skip redirects with invalid options
Jo-Philipp Wich
2013-11-18
Skip rules with invalid options
Jo-Philipp Wich
2013-11-18
Change fw3_parse_options() to indicate whether all options where parsed successfully
Jo-Philipp Wich
2013-11-07
Use a global -m conntrack --ctstate DNAT rule to accept all port forwards of a given zone in filter
Jo-Philipp Wich
2013-10-23
Improve ubus support
Steven Barth
2013-10-10
Use fw3_ipt_rule_replace() when setting up zone interface rules
Jo-Philipp Wich
2013-10-10
Use fw3_ipt_rule_replace() when setting up reflection
Jo-Philipp Wich
2013-10-10
Allow any protocol for reflection rules
Jo-Philipp Wich
2013-08-14
Reorganize chain layout for raw/NOTRACK rules to fix support for custom rules with target "NOTRACK"
Jo-Philipp Wich
2013-08-14
Use "-j CT --notrack" instead of deprecated "-j NOTRACK"
Jo-Philipp Wich
2013-08-14
Revert "Make sure that NOTRACK is linked into firewall3 if it is part of libext*.a"
Jo-Philipp Wich
2013-08-14
Make sure that NOTRACK is linked into firewall3 if it is part of libext*.a
Jo-Philipp Wich
2013-07-16
Treat redirects as port redirections if the specified dest_ip belongs to the router itself, this is a compatibility fix to firewall2.
Jo-Philipp Wich
2013-06-29
Properly dereference struct ether_addr
Jo-Philipp Wich
2013-06-29
Do not rely on ether_ntoa() when formatting mac addresses.
Jo-Philipp Wich
[next]