aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
* IPSet.create: fix error checkKaarle Ritvanen2019-12-241-1/+2
|
* fallback: trigger no DNS queriesv1.6.12Kaarle Ritvanen2019-09-071-14/+16
| | | | | fixes race condition where an unnecessary DNS query fails after kernel rules have already been flushed
* filter: ignore IPv6 addresses of NAT destinationv1.6.11Kaarle Ritvanen2019-08-262-31/+37
|
* test: filter-dnatKaarle Ritvanen2019-08-265-0/+1441
|
* activate: initial setupv1.6.10Kaarle Ritvanen2019-02-021-13/+43
|
* iptables.flush: use actfamiliesKaarle Ritvanen2019-02-021-10/+7
|
* early detection of missing kernel supportKaarle Ritvanen2019-02-022-24/+33
|
* family: list of families enabled in kernelKaarle Ritvanen2019-02-021-1/+10
|
* optfrag: rename constant: FAMILYFRAGSKaarle Ritvanen2019-02-024-6/+6
|
* optfrag.FAMILIES: move to new moduleKaarle Ritvanen2019-02-024-9/+17
|
* util: run functionKaarle Ritvanen2019-02-023-11/+19
|
* host.resolve: properly handle CNAME recordsv1.6.9Kaarle Ritvanen2019-01-262-12/+15
|
* host.resolve: use drillv1.6.8Kaarle Ritvanen2018-12-131-10/+6
|
* services: openvpnv1.6.7Kaarle Ritvanen2018-12-067-0/+19
|
* host.resolve: avoid ANY queryKaarle Ritvanen2018-12-061-2/+2
|
* provide context for host.resolvelistv1.6.6Kaarle Ritvanen2018-10-312-3/+3
|
* fallback: suppress superfluous message on SIGINTKaarle Ritvanen2018-10-221-1/+1
|
* test: log: nflogv1.6.5Kaarle Ritvanen2018-09-0419-6/+80
|
* Log: deterministic option orderingKaarle Ritvanen2018-09-041-17/+19
|
* adp-ntp: allow DNSKaarle Ritvanen2018-09-041-1/+3
|
* adp: http serverv1.6.4Kaarle Ritvanen2018-08-151-0/+4
|
* deterministic dependency resolverv1.6.3Kaarle Ritvanen2018-08-131-4/+5
|
* adp: web-clientv1.6.2Kaarle Ritvanen2018-08-133-8/+12
|
* adp-router: configurable default actionKaarle Ritvanen2018-08-131-1/+9
|
* adp: zone naming conventionKaarle Ritvanen2018-08-136-9/+11
|
* adp: variable naming conventionKaarle Ritvanen2018-08-132-5/+11
|
* default policy naming conventionKaarle Ritvanen2018-08-137-1/+1
|
* router policy: fix masqueradingv1.6.1Kaarle Ritvanen2018-08-071-1/+1
|
* basic default policiesv1.6.0Kaarle Ritvanen2018-08-068-0/+49
|
* json: rename directoryKaarle Ritvanen2018-08-065-3/+3
|
* Log: use nflog-size instead of nflog-rangev1.5.1Kaarle Ritvanen2018-03-062-4/+4
|
* test: remove generated policiesv1.5.0Kaarle Ritvanen2017-11-031-1/+9
|
* host: resolvelist functionKaarle Ritvanen2017-11-034-21/+31
|
* test: filter-limit: service with no-trackKaarle Ritvanen2017-11-034-46542/+46542
|
* Log.optfrags: packet mirroringKaarle Ritvanen2017-11-0322-55096/+129605
|
* Log: simplify structureKaarle Ritvanen2017-11-032-25/+14
|
* LogRule: use mangleoptfrags instead of servoptfragsKaarle Ritvanen2017-11-031-4/+2
|
* test: packet-logKaarle Ritvanen2017-11-0319-0/+100
|
* test: update-limit: make conn and flow limit outputs differKaarle Ritvanen2017-11-024-40/+43
|
* test: address: inet6 without inetKaarle Ritvanen2017-11-014-9118/+12087
|
* test: ulogKaarle Ritvanen2017-11-0121-43529/+98270
|
* generalize pruning based on address familyKaarle Ritvanen2017-11-012-38/+39
| | | | | eliminates source chains without proper destination chains (e.g. IPv6 addresses with pass action and ulog)
* constant for address familiesKaarle Ritvanen2017-11-015-20/+32
|
* test: address: inet6Kaarle Ritvanen2017-11-014-3962/+8318
|
* test: tproxyKaarle Ritvanen2017-11-015-0/+1057
|
* test: route-trackKaarle Ritvanen2017-11-015-0/+1067
|
* test: zone: renumber marksKaarle Ritvanen2017-11-0113-135/+135
|
* Maskable: constant table for address lengthsKaarle Ritvanen2017-11-011-4/+5
|
* ConfigObject.info: order by chain pathKaarle Ritvanen2017-11-015-7257/+7263
|
* test: split to 4 casesKaarle Ritvanen2017-10-1821-12118/+15224
|