Commit message (Collapse) | Author | Age | Files | Lines | ||
---|---|---|---|---|---|---|
... | ||||||
* | add sample policy file | Kaarle Ritvanen | 2012-05-01 | 1 | -0/+40 | |
| | ||||||
* | cover ICMPv6 echo in ping service definition | Kaarle Ritvanen | 2012-05-01 | 1 | -1/+4 | |
| | ||||||
* | use local DNS resolverv0.1.0 | Kaarle Ritvanen | 2012-04-19 | 1 | -2/+1 | |
| | ||||||
* | interrupted read triggers fallback | Kaarle Ritvanen | 2012-04-19 | 1 | -1/+1 | |
| | ||||||
* | Config object initialization from PolicySet | Kaarle Ritvanen | 2012-04-19 | 2 | -11/+12 | |
| | ||||||
* | wrapped a long statement in policy.lua | Kaarle Ritvanen | 2012-04-19 | 1 | -1/+7 | |
| | ||||||
* | corrected scope errors | Kaarle Ritvanen | 2012-04-19 | 2 | -2/+2 | |
| | ||||||
* | enable, disable, and list optional policy files | Kaarle Ritvanen | 2012-04-12 | 2 | -8/+84 | |
| | ||||||
* | configuration (policy) file handling moved to a dedicated module | Kaarle Ritvanen | 2012-04-12 | 2 | -57/+111 | |
| | ||||||
* | convert empty strings to nil values in input configuration table | Kaarle Ritvanen | 2012-04-12 | 1 | -2/+4 | |
| | | | | skip expansion in the variable fragment to avoid clearing variable declarations | |||||
* | dnat option for filter rules | Kaarle Ritvanen | 2012-04-12 | 2 | -1/+72 | |
| | ||||||
* | module metadata processing moved to awall.loadmodules | Kaarle Ritvanen | 2012-04-12 | 4 | -15/+29 | |
| | | | | | deterministic processing order within modules global classmap for dynamic module discovery | |||||
* | module namespace-related style adjustments | Kaarle Ritvanen | 2012-04-12 | 3 | -9/+8 | |
| | | | | | drop awall prefix when accessing submodules from the main module remove module-level function/module shortcuts when used only once | |||||
* | subfunctions prefixed with 'local' | Kaarle Ritvanen | 2012-04-12 | 2 | -10/+10 | |
| | ||||||
* | corrected fw zone exclusion in NATRule.init | Kaarle Ritvanen | 2012-04-09 | 1 | -2/+4 | |
| | ||||||
* | optional, importable configuration files | Kaarle Ritvanen | 2012-04-09 | 2 | -20/+55 | |
| | ||||||
* | service definition added: bgp | Kaarle Ritvanen | 2012-04-05 | 1 | -0/+1 | |
| | ||||||
* | string concatenation support in variable expansion | Kaarle Ritvanen | 2012-03-26 | 1 | -5/+14 | |
| | ||||||
* | more service definitions | Kaarle Ritvanen | 2012-03-26 | 1 | -0/+10 | |
| | ||||||
* | safe activation mode (with automatic fallback) | Kaarle Ritvanen | 2012-03-26 | 2 | -5/+66 | |
| | ||||||
* | iptables module: backup and revert functions | Kaarle Ritvanen | 2012-03-26 | 1 | -16/+30 | |
| | | | | private class for reading current configuration | |||||
* | make verification using ip[6]tables-restore optional | Kaarle Ritvanen | 2012-03-22 | 1 | -3/+5 | |
| | | | | verification requires root privileges | |||||
* | control input and output directories from command line | Kaarle Ritvanen | 2012-03-22 | 2 | -7/+26 | |
| | ||||||
* | iptables module: use class model, new class for run-time backups | Kaarle Ritvanen | 2012-03-22 | 2 | -19/+47 | |
| | ||||||
* | use class model in ipset module | Kaarle Ritvanen | 2012-03-22 | 2 | -7/+5 | |
| | ||||||
* | eliminate module-level configuration variables | Kaarle Ritvanen | 2012-03-22 | 2 | -18/+7 | |
| | ||||||
* | allow passing arguments to init when creating objects with class.new | Kaarle Ritvanen | 2012-03-22 | 2 | -7/+4 | |
| | ||||||
* | class model utilized in init.lua | Kaarle Ritvanen | 2012-03-22 | 2 | -27/+26 | |
| | | | | context objects converted to explicit Config objects | |||||
* | class model generalized and moved to a self-contained module | Kaarle Ritvanen | 2012-03-22 | 3 | -33/+51 | |
| | ||||||
* | global variables eliminated | Kaarle Ritvanen | 2012-03-22 | 4 | -41/+60 | |
| | | | | | (except for the DNS resolution cache) context, IPTables, and IPSet objects introduced | |||||
* | dumping and testing functions separated | Kaarle Ritvanen | 2012-03-16 | 5 | -21/+73 | |
| | | | | module for ipset tool-related functionality | |||||
* | removed ununsed variable | Kaarle Ritvanen | 2012-03-16 | 1 | -1/+0 | |
| | ||||||
* | test mode moved to awall-cli from init.lua | Kaarle Ritvanen | 2012-03-16 | 2 | -16/+32 | |
| | ||||||
* | directory for default JSON files | Kaarle Ritvanen | 2012-03-16 | 3 | -1/+2 | |
| | ||||||
* | allow for non-existent ipset configuration fragment | Kaarle Ritvanen | 2012-03-16 | 1 | -7/+9 | |
| | ||||||
* | configuration file for masquerading ipset | Kaarle Ritvanen | 2012-03-16 | 1 | -0/+8 | |
| | ||||||
* | generate ipset definition file | Kaarle Ritvanen | 2012-03-16 | 1 | -0/+9 | |
| | ||||||
* | changed protocol strings to inet and inet6 | Kaarle Ritvanen | 2012-03-16 | 5 | -13/+13 | |
| | ||||||
* | explicit declaration of ipsets (with protocol family information) | Kaarle Ritvanen | 2012-03-16 | 1 | -1/+5 | |
| | ||||||
* | multiple ipsets per rule | Kaarle Ritvanen | 2012-03-16 | 1 | -11/+15 | |
| | ||||||
* | process configuration files in deterministic order | Kaarle Ritvanen | 2012-03-16 | 1 | -1/+5 | |
| | ||||||
* | support for using externally controlled ipsets in rules | Kaarle Ritvanen | 2012-03-16 | 1 | -2/+16 | |
| | ||||||
* | enable ipset-based masquerading | Kaarle Ritvanen | 2012-03-01 | 1 | -5/+5 | |
| | ||||||
* | variable expansion | Kaarle Ritvanen | 2012-03-01 | 1 | -0/+30 | |
| | ||||||
* | output verification using ip[6]tables-restore | Kaarle Ritvanen | 2012-02-23 | 4 | -22/+40 | |
| | | | | | | output saved as rules[6]-save corrected a couple of syntax errors in output disabled the default rule in nat module | |||||
* | descriptive chain names | Kaarle Ritvanen | 2012-02-16 | 2 | -9/+13 | |
| | ||||||
* | use lfs.dir for listing modules | Kaarle Ritvanen | 2012-02-16 | 1 | -6/+11 | |
| | ||||||
* | multiple configuration files, service definitions | Kaarle Ritvanen | 2012-02-16 | 2 | -4/+41 | |
| | ||||||
* | util.extend helper function | Kaarle Ritvanen | 2012-02-16 | 2 | -10/+10 | |
| | ||||||
* | initial version | Kaarle Ritvanen | 2012-02-16 | 10 | -0/+755 | |