<feed xmlns='http://www.w3.org/2005/Atom'>
<title>aports/main/shorewall-shell, branch master</title>
<subtitle>Main aports tree
</subtitle>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/'/>
<entry>
<title>main/shorewall-{common,shell}: remove</title>
<updated>2014-11-06T07:03:40+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2014-11-06T07:03:40+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=ea652e0795553b67db1c1c7a8ed0dd8ae5015c50'/>
<id>ea652e0795553b67db1c1c7a8ed0dd8ae5015c50</id>
<content type='text'>
shell based shorewall is no longer maintained by upstream. We drop
support for it.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
shell based shorewall is no longer maintained by upstream. We drop
support for it.
</pre>
</div>
</content>
</entry>
<entry>
<title>main/shorewall-shell: fix redirect excludes</title>
<updated>2012-07-11T08:34:39+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2012-07-11T08:34:39+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=c2ad54cf99aadbc72adbdbafd03f615c4d0aaa30'/>
<id>c2ad54cf99aadbc72adbdbafd03f615c4d0aaa30</id>
<content type='text'>
Fixes this error:

Setting up Rules...
Bad argument `10.12.96.1'
Try `iptables -h' or 'iptables --help' for more information.
   ERROR: Command "/sbin/iptables -t nat -A D_96_dnat -p tcp -d ! 10.12.96.1 --dport 80 -j REDIRECT --to-port 8080" Failed

on rule:
REDIRECT:info D_96      8080    tcp     80 -    !10.12.96.1
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Fixes this error:

Setting up Rules...
Bad argument `10.12.96.1'
Try `iptables -h' or 'iptables --help' for more information.
   ERROR: Command "/sbin/iptables -t nat -A D_96_dnat -p tcp -d ! 10.12.96.1 --dport 80 -j REDIRECT --to-port 8080" Failed

on rule:
REDIRECT:info D_96      8080    tcp     80 -    !10.12.96.1
</pre>
</div>
</content>
</entry>
<entry>
<title>main/shorewall-shell: remove unused post-install</title>
<updated>2012-06-26T14:55:37+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2012-06-26T14:55:37+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=f87a4af4458ab3594e605090215bd76b94cef3e8'/>
<id>f87a4af4458ab3594e605090215bd76b94cef3e8</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>main/shorewall-shell: add option to disable saving/restoring default route</title>
<updated>2012-06-26T14:47:00+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2012-06-26T14:47:00+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=2c42b21247e3a50c500f5dbea1549092022c30ad'/>
<id>2c42b21247e3a50c500f5dbea1549092022c30ad</id>
<content type='text'>
When starting, shorewall will save all default routes. When stop, it
will try to restore it. But does it badly. On multiisp setups with pingu
it will break things.

We (ab)use the RESTORE_DEFAULT_ROUTE to make it possible to avoid
restoring the default route.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
When starting, shorewall will save all default routes. When stop, it
will try to restore it. But does it badly. On multiisp setups with pingu
it will break things.

We (ab)use the RESTORE_DEFAULT_ROUTE to make it possible to avoid
restoring the default route.
</pre>
</div>
</content>
</entry>
<entry>
<title>main/shorewall-shell: do not remove ip rule from addr when no gateway</title>
<updated>2012-01-03T14:35:10+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2012-01-03T14:35:10+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=3e9fded968c102a9150b8a3da32a8d13daa7f59f'/>
<id>3e9fded968c102a9150b8a3da32a8d13daa7f59f</id>
<content type='text'>
We should not remove any ip rule that we have not created our selves
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
We should not remove any ip rule that we have not created our selves
</pre>
</div>
</content>
</entry>
<entry>
<title>main/shorewall-shell: set all/rp_filter based on ROUTE_FILTER</title>
<updated>2011-12-08T15:40:10+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2011-12-08T14:49:58+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=438e9609e25928bc0033ad9a29f628ee9b294af7'/>
<id>438e9609e25928bc0033ad9a29f628ee9b294af7</id>
<content type='text'>
The kernel changed behavior around 2.6.31. We need a way to turn off
rp_filter.

details:
http://article.gmane.org/gmane.comp.security.shorewall/23329/match=rp_filter

This will disable routefilter if ROUTE_FILTER=no in
/etc/shorewall/shorewall.conf default. To enable you will need set the
routefilter option in /etc/shorewall/interfaces
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
The kernel changed behavior around 2.6.31. We need a way to turn off
rp_filter.

details:
http://article.gmane.org/gmane.comp.security.shorewall/23329/match=rp_filter

This will disable routefilter if ROUTE_FILTER=no in
/etc/shorewall/shorewall.conf default. To enable you will need set the
routefilter option in /etc/shorewall/interfaces
</pre>
</div>
</content>
</entry>
<entry>
<title>main/shorewall-shell: do not restore default gw that you never modified</title>
<updated>2011-10-14T09:09:16+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2011-10-14T09:01:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=a6ab887506d0b6151606959447e45060a7d980f6'/>
<id>a6ab887506d0b6151606959447e45060a7d980f6</id>
<content type='text'>
Shorewall's restore default gw will intentinally break multi routes

When no 'balance' option is specified shorewall does not change the
default gw so there is no point in restoring (breaking) it either.
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
Shorewall's restore default gw will intentinally break multi routes

When no 'balance' option is specified shorewall does not change the
default gw so there is no point in restoring (breaking) it either.
</pre>
</div>
</content>
</entry>
<entry>
<title>main/shorewall-shell: add support for "none" gateway in providers</title>
<updated>2011-10-13T07:36:41+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2011-10-13T07:36:41+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=1e46ca977586cb2932102eaab67372e9126ae6a8'/>
<id>1e46ca977586cb2932102eaab67372e9126ae6a8</id>
<content type='text'>
This will make shorewall not add or delete any routes to the providers
route table
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
This will make shorewall not add or delete any routes to the providers
route table
</pre>
</div>
</content>
</entry>
<entry>
<title>main/shorewall-shell: upgrade to 4.2.11, add patch for ipset</title>
<updated>2011-10-05T11:43:06+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2011-10-05T11:36:39+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=232a4772c27d2825ab7dacc32b63e92477573d23'/>
<id>232a4772c27d2825ab7dacc32b63e92477573d23</id>
<content type='text'>
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
</pre>
</div>
</content>
</entry>
<entry>
<title>main: mass-rebuild of packages missing arch in .PKGINFO</title>
<updated>2011-03-31T13:43:08+00:00</updated>
<author>
<name>Natanael Copa</name>
<email>ncopa@alpinelinux.org</email>
</author>
<published>2011-03-31T13:43:08+00:00</published>
<link rel='alternate' type='text/html' href='https://git-old.alpinelinux.org/aports/commit/?id=4ff65ef29982e116527adebdd7ad73a05719712a'/>
<id>4ff65ef29982e116527adebdd7ad73a05719712a</id>
<content type='text'>
this is needed for apk-tools-2.1 migration
</content>
<content type='xhtml'>
<div xmlns='http://www.w3.org/1999/xhtml'>
<pre>
this is needed for apk-tools-2.1 migration
</pre>
</div>
</content>
</entry>
</feed>
