summaryrefslogtreecommitdiffstats
path: root/awall/modules
Commit message (Expand)AuthorAgeFilesLines
* filter: fix warning about -m state in newer iptablesNatanael Copa2013-01-011-1/+1
* enforce common base class for all objectsKaarle Ritvanen2012-10-031-1/+1
* stop using deprecated ip-range attribute internallyKaarle Ritvanen2012-10-031-1/+1
* rename address and port attributes in NAT rulesKaarle Ritvanen2012-09-131-5/+17
* make port-range work in NAT rules when ip-range not definedv0.2.10Kaarle Ritvanen2012-09-131-3/+6
* set prefix in log settingsv0.2.9Kaarle Ritvanen2012-09-121-1/+5
* support bypassing connection tracking per filter ruleKaarle Ritvanen2012-09-031-1/+11
* allow routing-related ICMP messages by defaultKaarle Ritvanen2012-09-031-7/+24
* generalize awall.optfrag.combinations to accept variable number of argumentsKaarle Ritvanen2012-09-031-2/+2
* remove unused method Filter.defaultzonesKaarle Ritvanen2012-08-281-4/+0
* configurable loggingKaarle Ritvanen2012-08-281-25/+66
* remove rule type-specific handling of zones and chainsKaarle Ritvanen2012-08-164-13/+15
* do not create helper chains for unused actionsKaarle Ritvanen2012-08-163-45/+41
* make module attributes optionalKaarle Ritvanen2012-08-164-8/+0
* support for TARPIT targetv0.2.3Kaarle Ritvanen2012-07-201-2/+10
* generalize creation of related rules based on cloningKaarle Ritvanen2012-07-201-6/+11
* lowercase names for all awall-internal chainsKaarle Ritvanen2012-07-201-4/+5
* dynamically discover classes in ConfigObject.createKaarle Ritvanen2012-07-201-3/+1
* disallow dnat option with actions other than acceptKaarle Ritvanen2012-07-201-0/+3
* streamlined sanity checking for allowed input/output interface optionsKaarle Ritvanen2012-07-202-13/+0
* support for TCPMSS targetKaarle Ritvanen2012-07-191-0/+38
* consistent chain names in level 5 dumpKaarle Ritvanen2012-07-192-8/+2
* route tracking for incoming connectionsv0.2.0Kaarle Ritvanen2012-07-131-1/+40
* support for MARK targetKaarle Ritvanen2012-07-131-0/+27
* base class for rules applicable to forwarded packets onlyKaarle Ritvanen2012-07-132-39/+8
* support for REDIRECT targetKaarle Ritvanen2012-07-121-9/+8
* renamed 'notrack' section to 'no-track'Kaarle Ritvanen2012-07-121-1/+1
* prepend object identifier and file name to error messagesKaarle Ritvanen2012-07-123-25/+24
* support for bypassing connection tracking for inbound packetsKaarle Ritvanen2012-06-281-0/+47
* corrected an error in raising an error (NAT rule interfaces)Kaarle Ritvanen2012-06-281-1/+1
* support for ACCEPT rules in NAT chainsKaarle Ritvanen2012-06-281-1/+2
* support for empty zonesKaarle Ritvanen2012-06-261-1/+1
* masquerading set rule applied after other SNAT rulesv0.1.4Kaarle Ritvanen2012-06-211-4/+6
* ipset-based masquerading moved to a module of its ownKaarle Ritvanen2012-06-212-5/+17
* by default, allow all ICMPv6 messages originating from or destined to local hostKaarle Ritvanen2012-06-211-1/+10
* multi-stage processing of default rulesKaarle Ritvanen2012-06-212-8/+8
* accept all loopback trafficKaarle Ritvanen2012-06-211-0/+9
* OUTPUT chain needs stateful tracking alsoTimo Teräs2012-06-081-1/+1
* dnat option for filter rulesKaarle Ritvanen2012-04-121-0/+65
* module metadata processing moved to awall.loadmodulesKaarle Ritvanen2012-04-122-2/+4
* module namespace-related style adjustmentsKaarle Ritvanen2012-04-121-2/+1
* corrected fw zone exclusion in NATRule.initKaarle Ritvanen2012-04-091-2/+4
* class model generalized and moved to a self-contained moduleKaarle Ritvanen2012-03-221-6/+6
* changed protocol strings to inet and inet6Kaarle Ritvanen2012-03-162-4/+4
* enable ipset-based masqueradingKaarle Ritvanen2012-03-011-5/+5
* output verification using ip[6]tables-restoreKaarle Ritvanen2012-02-231-3/+4
* descriptive chain namesKaarle Ritvanen2012-02-161-1/+1
* initial versionKaarle Ritvanen2012-02-162-0/+163