Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							a756114e59
							
						
					 | 
					
						
						
							
							firewall: change the order of IPv4/IPv6 address detection, fixes mixed notation v6 improperly detected as v4 address
						
						
						
						
						
						
						
						SVN-Revision: 21642 
						
					 | 
					
						2010-05-31 01:34:47 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							e25fbfccdf
							
						
					 | 
					
						
						
							
							firewall: fix support for netranges in redirect and rule sections
						
						
						
						
						
						
						
						SVN-Revision: 21640 
						
					 | 
					
						2010-05-30 23:49:47 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							409edb1b8e
							
						
					 | 
					
						
						
							
							firewall: count rules per chain and family, fix wrong order of ip6tables rules when ipv4 only or dual family rules are defined
						
						
						
						
						
						
						
						SVN-Revision: 21533 
						
					 | 
					
						2010-05-22 02:01:19 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							40ad9defcc
							
						
					 | 
					
						
						
							
							firewall: - fix ip6tables rules when icmp_type option is set - add "family" option to zones, forwardings, redirects and rules to selectively apply rules to iptables and/or ip6tables
						
						
						
						
						
						
						
						SVN-Revision: 21508 
						
					 | 
					
						2010-05-19 21:35:23 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							3ffd27f905
							
						
					 | 
					
						
						
							
							firewall: implement disable_ipv6 uci option
						
						
						
						
						
						
						
						SVN-Revision: 21503 
						
					 | 
					
						2010-05-19 01:55:46 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							c6fdffd932
							
						
					 | 
					
						
						
							
							firewall (#7355) - partially revert r21486, start firewall on init again - skip iface hotplug events if base fw is not up yet - get ifname and up state with uci_get_state() in iface setup since the values gathered by scan_interfaces() may be outdated when iface coldplugging happens (observed with pptp) - ignore up state when bringing down interfaces because ifdown reverts state vars before dispatching the iface event - bump package revision
						
						
						
						
						
						
						
						SVN-Revision: 21502 
						
					 | 
					
						2010-05-19 00:50:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							91519d51e9
							
						
					 | 
					
						
						
							
							firewall: fix a possible deadlock when the firewall config has syntax errors during restart
						
						
						
						
						
						
						
						SVN-Revision: 21501 
						
					 | 
					
						2010-05-18 20:15:47 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							28e92939d1
							
						
					 | 
					
						
						
							
							firewall: use uci_get_state() wrapper
						
						
						
						
						
						
						
						SVN-Revision: 21493 
						
					 | 
					
						2010-05-17 19:38:13 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							18a79362e9
							
						
					 | 
					
						
						
							
							firewall: properly clear hooks in fw_stop() to prevent extensions from being called twice after fw_restart()
						
						
						
						
						
						
						
						SVN-Revision: 21488 
						
					 | 
					
						2010-05-17 17:20:37 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							de15765a37
							
						
					 | 
					
						
						
							
							firewall: - defer firewall start until the first interface is brought up by hotplug, fixes race conditions on slow devices - create a file lock during firewall start and wait for it in hotplug events, prevents race conditions between start and addif - start firewall actions in background from hotplug handler since the firewall itself fires further hotplug events which results in a deadlock if not forked off - get loaded state direcly from the uci binary since updated value is not recognized by config_get after uci_set_state - bump package revision to r2
						
						
						
						
						
						
						
						SVN-Revision: 21486 
						
					 | 
					
						2010-05-17 12:47:14 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							e796062a4b
							
						
					 | 
					
						
						
							
							firewall: properly unset position for delete command, fixes rule removal in ifdown
						
						
						
						
						
						
						
						SVN-Revision: 21378 
						
					 | 
					
						2010-05-05 15:50:21 +00:00 | 
					
					
						
						
							
							
							
						
					 | 
				
			
				
					
						
							
							
								 
								Jo-Philipp Wich
							
						 
					 | 
					
						
						
						
						
							
						
						
							c284cb51c0
							
						
					 | 
					
						
						
							
							firewall: - replace uci firewall with a modular dual stack implementation developed by Malte S. Stretz - bump version to 2
						
						
						
						
						
						
						
						SVN-Revision: 21286 
						
					 | 
					
						2010-05-01 18:22:01 +00:00 | 
					
					
						
						
							
							
							
						
					 |