Commit Graph

  • f56d91bd80 connlabel: Allow numeric labels even if connlabel.conf exists Phil Sutter 2020-03-04 02:43:27 +01:00
  • d0446ab111 xtables: Review nft_init() Phil Sutter 2020-02-21 14:55:52 +01:00
  • 0f40a8bc49 xtables: Drop -4 and -6 support from xtables-{save,restore} Phil Sutter 2020-02-21 13:29:05 +01:00
  • 1639b8ba51 xtables: Align effect of -4/-6 options with legacy Phil Sutter 2020-02-21 13:18:32 +01:00
  • ba2af278e8 iptables-test.py: Fix --host mode Phil Sutter 2020-02-18 16:43:16 +01:00
  • ef10c1b8fc nft: Drop pointless assignment Phil Sutter 2020-02-17 12:56:24 +01:00
  • c33bae9c6c ebtables: among: Support mixed MAC and MAC/IP entries Phil Sutter 2020-02-13 17:49:53 +01:00
  • 94488d4eb9 xtables-translate: Fix for iface++ Phil Sutter 2020-02-13 14:01:50 +01:00
  • 2b2b7948c1 tests: shell: Fix skip checks with --host mode Phil Sutter 2020-02-12 21:26:06 +01:00
  • 8e76391096 xtables-restore: fix for --noflush and empty lines Phil Sutter 2020-02-11 16:52:59 +01:00
  • e179e87a11 xtables-translate: Fix for interface name corner-cases Phil Sutter 2020-02-06 15:08:41 +01:00
  • 8560ef29b1 .gitignore: add nano/vim swap file Arturo Borrero Gonzalez 2020-02-10 11:33:13 +01:00
  • ac5794e3de extensions: time: add translation and tests Jose M. Guisado Gomez 2020-02-04 11:24:16 +01:00
  • d6b480e7ce Fixed some man pages typos ('This modules' -> 'This module') Álvaro Santos 2020-01-16 01:40:57 +00:00
  • 38aa9cf1d3 extensions: AUDIT: fix man-page typo. Jeremy Sowden 2019-12-20 19:54:50 +00:00
  • 25b38bcbf2 extensions: among: Check call to fstat() Phil Sutter 2019-12-05 16:35:51 +01:00
  • 2861bdbbf0 xtables-translate: Guard strcpy() call in xlate_ifname() Phil Sutter 2019-12-05 16:01:29 +01:00
  • f7d3dbb82e libxtables: Avoid buffer overrun in xtables_compatible_revision() Phil Sutter 2019-12-05 13:57:18 +01:00
  • 28c16371cd extensions: cluster: Avoid undefined shift Phil Sutter 2019-12-05 13:36:31 +01:00
  • 98b2210029 extensions: time: Avoid undefined shift Phil Sutter 2019-12-05 13:15:01 +01:00
  • 48be21bf39 xtables-restore: Avoid access of uninitialized data Phil Sutter 2019-12-05 11:40:26 +01:00
  • b45b4e3903 iptables-apply: script and manpage update gw.2010@tnode.com 2019-12-04 19:18:34 +01:00
  • 55719423de extensions: libxt_sctp: add manpage description Laurence J. Lane 2019-12-04 19:18:28 +01:00
  • 6a79d78986 iptables: mention iptables-apply(8) in manpages Laurence J. Lane 2019-12-04 19:18:21 +01:00
  • 84c452384c libipq: fix spelling in manpage Laurence J. Lane 2019-12-04 19:18:14 +01:00
  • af276b85c0 extensions: manpages: cleanup hyphens Laurence J. Lane 2019-12-04 19:18:07 +01:00
  • 3b9b515618 iptables: cleanup "allows to" usage Laurence J. Lane 2019-12-04 19:18:00 +01:00
  • 02b260a10f iptables: install iptables-apply script and manpage Laurence J. Lane 2019-12-04 19:17:53 +01:00
  • a103fbfadf xtables-restore: Fix parser feed from line buffer Phil Sutter 2019-12-04 09:56:06 +01:00
  • 066a19596a Fix DEBUG build Phil Sutter 2019-12-04 09:36:59 +01:00
  • 37ff0d667d extensions: CLUSTERIP: Mark as deprecated in man page Phil Sutter 2019-12-04 14:06:02 +01:00
  • 6992e2fe24 build: bump dependency on libnftnl Pablo Neira Ayuso 2019-12-02 18:14:51 +01:00
  • 2b506c6681 configure: bump version for 1.8.4 release Pablo Neira Ayuso 2019-12-02 17:06:13 +01:00
  • 2675388872 nft: bridge: Rudimental among extension support Phil Sutter 2019-08-21 00:42:13 +02:00
  • 6d19208caf nft: Support parsing lookup expression Phil Sutter 2019-08-21 00:33:51 +02:00
  • 6f873ed5dc nft: Embed rule's table name in nft_xt_ctx Phil Sutter 2019-08-20 22:16:41 +02:00
  • b34bfe69c6 nft: Bore up nft_parse_payload() Phil Sutter 2019-08-20 22:09:04 +02:00
  • e104dcc80d nft: Support NFT_COMPAT_SET_ADD Phil Sutter 2019-08-20 11:40:44 +02:00
  • caaba4ed83 nft: Introduce NFT_CL_SETS cache level Phil Sutter 2019-08-20 11:21:42 +02:00
  • a5877a214b nft: Eliminate pointless calls to nft_family_ops_lookup() Phil Sutter 2019-08-21 10:42:19 +02:00
  • 441d80c4cf nft: Keep nft_handle pointer in nft_xt_ctx Phil Sutter 2019-08-21 00:19:25 +02:00
  • 1e8ef6a584 nft: family_ops: Pass nft_handle to 'rule_to_cs' callback Phil Sutter 2019-08-20 21:41:12 +02:00
  • 7dc64022bb nft: family_ops: Pass nft_handle to 'print_rule' callback Phil Sutter 2019-08-20 19:53:13 +02:00
  • 01d9357f68 nft: family_ops: Pass nft_handle to 'rule_find' callback Phil Sutter 2019-08-20 18:20:53 +02:00
  • d4d319cb0a nft: family_ops: Pass nft_handle to 'add' callback Phil Sutter 2019-08-20 15:15:19 +02:00
  • 7a373f6683 nft: Fix -Z for rules with NFTA_RULE_COMPAT Phil Sutter 2019-11-15 10:47:25 +01:00
  • 7084d0b6c9 nft: CMD_ZERO needs a rule cache Phil Sutter 2019-11-15 10:47:24 +01:00
  • bd2dc3e730 tests: shell: Add ipt-restore/0007-flush-noflush_0 Phil Sutter 2019-09-17 18:28:18 +02:00
  • 09cb517949 xtables-restore: Improve performance of --noflush operation Phil Sutter 2019-09-17 20:27:27 +02:00
  • 92991bbe12 xtables-restore: Allow lines without trailing newline character Phil Sutter 2019-09-18 15:39:44 +02:00
  • f308f944a0 xtables-restore: Remove some pointless linebreaks Phil Sutter 2019-09-17 18:58:17 +02:00
  • a7a6062f8f xtables-restore: Introduce line parsing function Phil Sutter 2019-09-17 16:15:23 +02:00
  • 73a9a03240 xtables-restore: Introduce struct nft_xt_restore_state Phil Sutter 2019-10-18 19:02:29 +02:00
  • 3c0e4590ff xtables-restore: Integrate restore callbacks into struct nft_xt_restore_parse Phil Sutter 2019-10-17 22:26:50 +02:00
  • 49d95c9002 nft-arp: Use xtables_print_mac_and_mask() Phil Sutter 2019-10-28 11:46:04 +01:00
  • be5672ff8b xtables-arp: Use xtables_parse_interface() Phil Sutter 2019-10-26 21:37:48 +02:00
  • 8f0c4bd1ea xtables-arp: Drop some unused variables Phil Sutter 2019-10-25 17:26:41 +02:00
  • d960a99135 xtables-arp: Integrate OPT_* defines into xshared.h Phil Sutter 2019-10-25 17:21:13 +02:00
  • 56fe510492 Replace TRUE/FALSE with true/false Phil Sutter 2019-10-25 14:35:51 +02:00
  • 6fee37cfe6 xtables-arp: Drop generic_opt_check() Phil Sutter 2019-10-25 14:08:59 +02:00
  • f2690ca842 Merge CMD_* defines Phil Sutter 2019-05-13 15:32:01 +02:00
  • 284a3e6756 xshared: Share a common implementation of parse_rulenumber() Phil Sutter 2019-10-22 22:55:08 +02:00
  • 45989e8fbe xshared: Share a common add_command() implementation Phil Sutter 2019-10-22 22:49:29 +02:00
  • 8e502b02ef ip6tables, xtables-arp: Drop unused struct pprot Phil Sutter 2019-10-22 23:31:46 +02:00
  • fd0bb3f4b0 xtables-arp: Use xtables_ipparse_multiple() Phil Sutter 2019-10-25 18:02:52 +02:00
  • 9376c42a59 xshared: Introduce struct argv_store Phil Sutter 2019-10-17 23:36:47 +02:00
  • f8ec1b7a29 iptables-xml: Use add_param_to_argv() Phil Sutter 2019-10-18 01:30:22 +02:00
  • ffb339224f nft: Use ARRAY_SIZE() macro in nft_strerror() Phil Sutter 2019-10-17 23:55:02 +02:00
  • 4e470fa347 xtables-restore: Unbreak *tables-restore Phil Sutter 2019-10-22 12:25:28 +02:00
  • 3dc433b55b xtables-restore: Fix --table parameter check Phil Sutter 2019-09-20 17:31:58 +02:00
  • 55a7558bb2 xtables-restore: Drop chain_list callback Phil Sutter 2019-10-18 00:09:01 +02:00
  • 20994ab18d xtables-restore: Drop local xtc_ops instance Phil Sutter 2019-10-18 00:03:00 +02:00
  • f88bc3d228 iptables-restore: Constify struct iptables_restore_cb Phil Sutter 2019-10-17 23:20:22 +02:00
  • eedb0bb2ad xtables-restore: Constify struct nft_xt_restore_cb Phil Sutter 2019-10-17 22:49:26 +02:00
  • 4abb44c978 xtables-restore: Introduce rule counter tokenizer function Phil Sutter 2019-09-17 18:43:21 +02:00
  • fe2c53d570 xtables-restore: Use xt_params->program_name Phil Sutter 2019-09-17 16:45:20 +02:00
  • 2718697373 xtables-restore: Treat struct nft_xt_restore_parse as const Phil Sutter 2019-10-17 21:46:53 +02:00
  • c41b98babd nft: Optimize flushing all chains of a table Phil Sutter 2019-08-28 12:33:55 +02:00
  • 48a21d5c7a nft: Support nft_is_table_compatible() per chain Phil Sutter 2019-09-25 18:48:07 +02:00
  • 7b64c50904 nft: Reduce cache overhead of nft_chain_builtin_init() Phil Sutter 2019-09-25 18:20:24 +02:00
  • 026109dbec nft-cache: Support partial rule cache per chain Phil Sutter 2019-10-02 21:13:47 +02:00
  • e2883c5531 nft-cache: Support partial cache per table Phil Sutter 2019-09-25 13:49:19 +02:00
  • c6d3ae9437 nft-cache: Cover for multiple fetcher invocation Phil Sutter 2019-10-07 18:40:40 +02:00
  • b5cb6e631c nft-cache: Fetch only chains in nft_chain_list_get() Phil Sutter 2019-10-07 13:49:08 +02:00
  • 5b5c998da4 nft-cache: Introduce cache levels Phil Sutter 2019-10-01 16:23:24 +02:00
  • 124587ad42 iptables-test: Run tests in lexical order Phil Sutter 2019-09-27 12:07:46 +02:00
  • d812b91bc6 nft: Extract cache routines into nft-cache.c Phil Sutter 2019-10-01 15:09:55 +02:00
  • 97fbef55d1 nft: Avoid nested cache fetching Phil Sutter 2019-10-07 12:35:21 +02:00
  • 4e9782cae2 nft: Pass nft_handle to flush_cache() Phil Sutter 2019-10-01 15:14:48 +02:00
  • 702b543494 extensions: libxt_SYNPROXY: add xlate method Jose M. Guisado Gomez 2019-09-30 19:28:07 +02:00
  • 2a459ebc0e xtables-restore: Minimize caching when flushing Phil Sutter 2019-09-25 11:29:59 +02:00
  • 3e450a6cc2 nft: Make nftnl_table_list_get() fetch only tables Phil Sutter 2019-09-24 16:57:24 +02:00
  • 760b35b46e nft: Fix for add and delete of same rule in single batch Phil Sutter 2019-09-03 18:10:55 +02:00
  • f51cae64e9 tests: shell: Support running for legacy/nft only Phil Sutter 2019-09-25 12:54:55 +02:00
  • 4e2c54c75c tests/shell: Speed up ipt-restore/0004-restore-race_0 Phil Sutter 2019-09-03 15:22:39 +02:00
  • 1b148f23cd nft: Get rid of NFT_COMPAT_EXPR_MAX define Phil Sutter 2019-08-21 00:28:21 +02:00
  • 344603d4cf nft: Fix typo in nft_parse_limit() error message Phil Sutter 2019-08-20 11:34:58 +02:00
  • b19d239323 xtables_error() does not return Phil Sutter 2019-09-17 17:53:31 +02:00
  • 7c64eaf4b1 nft: Fix add_bitwise_u16() on Big Endian Phil Sutter 2019-09-20 11:19:15 +02:00
  • 5a0294901d nft Increase mnl_talk() receive buffer size Phil Sutter 2019-08-28 22:10:40 +02:00