Commit Graph

  • 35b22e82fa Revert "ebtables: use extrapositioned negation consistently" Phil Sutter 2019-02-05 18:18:02 +01:00
  • 148131f204 xtables: Fix for false-positive rule matching Phil Sutter 2019-02-04 21:52:53 +01:00
  • a880cc2835 xtables: Fix for crash when comparing rules with standard target Phil Sutter 2019-02-01 19:17:50 +01:00
  • ac8d992b8b extensions: Fix arptables extension tests Phil Sutter 2019-02-01 17:06:19 +01:00
  • a1da179b0f arptables-nft: Set h-type/h-length masks by default, too Phil Sutter 2019-02-01 17:06:18 +01:00
  • 432a5ecfa7 nft: Fix potential memleaks in nft_*_rule_find() Phil Sutter 2019-01-22 11:14:21 +01:00
  • 32ebc39f71 ebtables: Fix rule listing with counters Phil Sutter 2019-01-21 17:43:34 +01:00
  • 4c54c89244 xtables: Catch errors when zeroing rule rounters Phil Sutter 2018-12-15 19:25:04 +01:00
  • 3d8f261c56 tests: shell: Add arptables-nft verbose output test Phil Sutter 2019-01-31 16:12:56 +01:00
  • 84331e3ed3 arptables-nft: Don't print default h-len/h-type values Phil Sutter 2019-01-31 16:12:55 +01:00
  • 2c3f7a2cd6 arptables-nft-save: Fix position of -j option Phil Sutter 2019-01-31 16:12:54 +01:00
  • 9421327926 arptables-nft: Remove space between *cnt= and value Phil Sutter 2019-01-31 16:12:53 +01:00
  • 756bea26a3 arptables-nft: Fix CLASSIFY target printing Phil Sutter 2019-01-31 16:12:52 +01:00
  • f7fa88020f arptables-nft: Fix MARK target parsing and printing Phil Sutter 2019-01-31 16:12:51 +01:00
  • 043bf38bc9 arptables-nft: Fix listing rules without target Phil Sutter 2019-01-31 16:12:50 +01:00
  • a5f517a41d xtables: Speed up chain deletion in large rulesets Phil Sutter 2018-12-12 20:04:12 +01:00
  • 7ea0b7d809 xtables: Fix for inserting rule at wrong position Phil Sutter 2019-01-15 23:23:05 +01:00
  • 032dc4a18a utils: Add a manpage for nfbpf_compile Phil Sutter 2019-01-16 22:47:59 +01:00
  • 5ca9acf51a xtables: Fix position of replaced rules in cache Phil Sutter 2019-01-15 23:23:04 +01:00
  • 2b801fc515 nft: Add new builtin chains to cache immediately Phil Sutter 2019-01-15 23:23:03 +01:00
  • 41358d4743 xtables: Set errno in nft_rule_check() if chain not found Phil Sutter 2018-12-30 20:06:10 +01:00
  • 4441b7da79 nft: Simplify flush_chain_cache() Phil Sutter 2018-12-30 20:06:09 +01:00
  • fae77a2463 nft: Simplify nft_is_chain_compatible() Phil Sutter 2018-12-30 20:06:08 +01:00
  • 039b048965 nft: Make use of nftnl_rule_lookup_byindex() Phil Sutter 2018-12-20 16:09:20 +01:00
  • 6b1871914e xtables: Optimize list rules command with given chain Phil Sutter 2018-12-20 16:09:19 +01:00
  • 11cbd7291f xtables: Optimize list command with given chain Phil Sutter 2018-12-20 16:09:18 +01:00
  • 0b950ed454 xtables: Optimize user-defined chain deletion Phil Sutter 2018-12-20 16:09:17 +01:00
  • e80f7fe56e tests: Extend verbose output and return code tests Phil Sutter 2018-12-20 16:09:16 +01:00
  • a6ce0c65d3 xtables: Optimize nft_chain_zero_counters() Phil Sutter 2018-12-20 16:09:15 +01:00
  • 196841c959 xtables: Optimize flushing a specific chain Phil Sutter 2018-12-20 16:09:14 +01:00
  • 63dc7a0d86 nft: Drop nft_chain_list_find() Phil Sutter 2018-12-20 16:09:13 +01:00
  • 947c51c95e xtables: Implement per chain rule cache Phil Sutter 2018-12-20 16:09:12 +01:00
  • eb13831f1c nft: Move nft_rule_list_get() above nft_chain_list_get() Phil Sutter 2018-12-20 16:09:11 +01:00
  • 8bae620abf nft: Introduce fetch_chain_cache() Phil Sutter 2018-12-20 16:09:10 +01:00
  • 88bd4f2887 nft: Simplify nft_rule_insert() a bit Phil Sutter 2018-12-20 16:09:09 +01:00
  • 402dac2190 nft: Simplify per table chain cache update Phil Sutter 2018-12-20 16:09:08 +01:00
  • d4b0d248cc nft: Reduce indenting level in flush_chain_cache() Phil Sutter 2018-12-20 16:09:07 +01:00
  • 9975b6da9f nft: Reduce __nft_rule_del() signature Phil Sutter 2018-12-20 16:09:06 +01:00
  • e774b15299 nft: Review is_*_compatible() routines Phil Sutter 2018-12-20 16:09:05 +01:00
  • 9523b2e9de xtables-restore: Review chain handling Phil Sutter 2018-12-20 16:09:04 +01:00
  • 7e09582a57 nft: Review unclear return points Phil Sutter 2018-12-20 16:09:03 +01:00
  • 71f9e474d4 nft: Simplify nftnl_rule_list_chain_save() Phil Sutter 2018-12-20 16:09:02 +01:00
  • 9ac3988872 extensions: TRACE: Point at xtables-monitor in documentation Phil Sutter 2018-12-18 12:16:30 +01:00
  • 2908eda10b include: extend the headers conflict workaround to in6.h Baruch Siach 2018-12-02 18:56:34 +02:00
  • 290d76b443 extensions: libipt_realm: Document allowed realm values Phil Sutter 2018-12-03 14:52:28 +01:00
  • ccf154d742 xtables: Don't use native nftables comments Phil Sutter 2018-11-27 20:07:11 +01:00
  • 2ed6c85f87 ebtables: Use xtables_exit_err() Phil Sutter 2018-11-23 15:32:53 +01:00
  • b0466ae6fb arptables: Support --set-counters option Phil Sutter 2018-11-22 20:50:13 +01:00
  • 5839d7fe62 extensions: libip6t_mh: fix bogus translation error Pablo Neira Ayuso 2018-11-19 14:09:20 +01:00
  • 05a682af79 xtables: make all nft_parse_ helpers static Florian Westphal 2018-11-18 19:26:51 +01:00
  • bd5f7f521d xtables: rename opcodes to arp_opcodes Florian Westphal 2018-06-08 15:19:18 +02:00
  • 3c7ea26c85 xtables: constify struct builtin_table and struct builtin_chain Pablo Neira Ayuso 2018-11-17 18:25:58 +01:00
  • 5016d1eb84 nft: move initialize to struct nft_handle Pablo Neira Ayuso 2018-11-17 18:38:30 +01:00
  • 1847d9db75 nft: move chain_cache back to struct nft_handle Pablo Neira Ayuso 2018-11-17 18:16:45 +01:00
  • 9847abe6fb nft: add type field to builtin_table Pablo Neira Ayuso 2018-11-17 18:10:15 +01:00
  • aa5d3c5b16 arptables-nft: use generic expression parsing function Florian Westphal 2018-11-18 12:31:33 +01:00
  • 90b0d3abfc xtables-monitor: fix build with musl libc Baruch Siach 2018-11-17 22:20:08 +02:00
  • 8d9d7e4b9e include: fix build with kernel headers before 4.2 Baruch Siach 2018-11-16 09:30:33 +02:00
  • c58ecf9f8b xtables: Introduce per table chain caches Phil Sutter 2018-11-15 14:53:02 +01:00
  • 7c8791edac xtables-monitor: fix build with older glibc Baruch Siach 2018-11-16 07:23:32 +02:00
  • 907e429d75 extensions: format-security fixes in libip[6]t_icmp Adam Gołębiowski 2018-11-14 07:35:28 +01:00
  • 51d374ba41 ebtables: vlan: fix userspace/kernel headers collision Baruch Siach 2018-11-13 19:22:08 +02:00
  • d89cdfae64 ip6tables-save: Merge into iptables-save.c Phil Sutter 2018-09-19 16:25:58 +02:00
  • 074e307e56 ip6tables-restore: Merge into iptables-restore.c Phil Sutter 2018-09-19 16:25:57 +02:00
  • 341279e090 libiptc: Extend struct xtc_ops Phil Sutter 2018-09-19 16:25:56 +02:00
  • bba6bc692b configure: bump versions for 1.8.2 release Florian Westphal 2018-11-13 06:45:21 +01:00
  • 61d6c3834d xtables: add 'printf' attribute to xlate_add Florian Westphal 2018-11-12 14:40:41 +01:00
  • 5edb249b25 libxtables: xlate: init buffer to zero Florian Westphal 2018-11-12 18:04:45 +01:00
  • 9afd2a6e8c tests: shell: fix expected arptables-save output Florian Westphal 2018-11-05 17:51:18 +01:00
  • 638794172f arptables: fix --version info Florian Westphal 2018-11-07 10:32:42 +01:00
  • d703c1f0be arptables: ignore --table argument. Florian Westphal 2018-11-07 10:16:24 +01:00
  • d5754e3847 arptables: make uni/multicast mac masks static Florian Westphal 2018-11-06 18:39:16 +01:00
  • 1b63e66c26 arptables: add test cases Florian Westphal 2018-11-05 17:51:37 +01:00
  • 5aecb2d8bf arptables: pre-init hlen and ethertype Florian Westphal 2018-11-05 17:51:18 +01:00
  • 9677ed12a9 arptables: fix src/dst mac handling Florian Westphal 2018-11-06 17:52:10 +01:00
  • ab0b6d508c arptables: fix target ip offset Florian Westphal 2018-11-06 17:48:24 +01:00
  • c0c75ce336 arptables: fix -s/-d handling for negation and mask Florian Westphal 2018-11-05 17:05:12 +01:00
  • 3ac65afe05 arptables: add basic test infra for arptables-nft Florian Westphal 2018-11-05 17:03:07 +01:00
  • e31564fbc0 arptables: fix rule deletion/compare Florian Westphal 2018-11-05 17:01:36 +01:00
  • 2345ff6c24 arptables: remove code that is also commented-out in original arptables Florian Westphal 2018-11-05 23:53:31 +01:00
  • 50c2397af9 arptables-save: add -c option, like xtables-save Florian Westphal 2018-11-05 13:38:08 +01:00
  • d9a518ee22 arptables: use ->save for arptables-save, like xtables Florian Westphal 2018-11-07 13:57:16 +01:00
  • 5a52e6a9cf extensions: test protocol and interface negation Florian Westphal 2018-11-05 18:58:42 +01:00
  • 85d7df90ed xtables: Fix error return code in nft_chain_user_rename() Phil Sutter 2018-11-12 14:29:47 +01:00
  • 3ccb443df9 xtables: Clarify error message when deleting by index Phil Sutter 2018-11-12 14:29:46 +01:00
  • 95db36442a xtables: Fix typo in do_command() error message Phil Sutter 2018-11-12 14:29:45 +01:00
  • 5f508b76a0 ebtables: use extrapositioned negation consistently Florian Westphal 2018-11-12 12:49:11 +01:00
  • 583b27eabc ebtables-save: add -c option, using xtables-style counters Florian Westphal 2018-11-12 12:49:10 +01:00
  • e6723abac8 nft: add NFT_TABLE_* enumeration Pablo Neira Ayuso 2018-11-12 12:44:56 +01:00
  • 21ec111803 nft: replace nft_chain_dump() by nft_chain_list_get() Pablo Neira Ayuso 2018-11-12 12:03:57 +01:00
  • 05947c8223 iptables-nft: fix -f fragment option Florian Westphal 2018-11-11 22:02:39 +01:00
  • 7bd9febf65 libxtables: add and use mac print helpers Florian Westphal 2018-11-03 23:43:49 +01:00
  • a10eb8861c extensions: libebt_ip: fix tos negation Florian Westphal 2018-11-05 11:46:02 +01:00
  • 9b127b7154 extensions: libebt_ip6: fix ip6-dport negation Florian Westphal 2018-11-05 11:30:57 +01:00
  • c59ba1b19b xtables-nft: make -Z option work Florian Westphal 2018-11-05 10:44:20 +01:00
  • 1bf4a13712 nft: add missing error string Florian Westphal 2018-11-03 23:45:13 +01:00
  • a9f937785b iptables-tests: add % to run iptables commands Pablo Neira Ayuso 2018-11-03 14:40:26 +01:00
  • b81c8da237 iptables-tests: do not append xtables-multi to external commands Pablo Neira Ayuso 2018-11-03 14:40:26 +01:00
  • edf2b7c086 ebtables-nft: add arpreply target Florian Westphal 2018-10-09 17:21:37 +02:00
  • 2d1372ecfc ebtables: add redirect test case Florian Westphal 2018-11-02 16:19:42 +01:00