summaryrefslogtreecommitdiffstats
Commit message (Expand)AuthorAgeFilesLines
* iptables: handle cidr notation more sanely (Phil Oester <kernel@linuxace.com>)Phil Oester2006-07-101-0/+30
* please kill santa-claus (Pierre-Yves Ritschard <pierre-yves@spootnik.org>)Pierre-Yves Ritschard2006-07-051-1/+0
* libiptc symbols clash (Phil Oester <kernel@linuxace.com>)Phil Oester2006-07-052-0/+4
* - force user to specify --icmpv6-type if icmpv6 match is required to loadYasuyuki KOZAKAI2006-07-042-1/+11
* ip6tables multiport does not support x:y (Phil Oester <kernel@linuxace.com>)Phil Oester2006-07-031-5/+4
* iptables trivial compile warning cleanup (Phil Oester <kernel@linuxace.com>)Phil Oester2006-07-032-4/+6
* size_t changed to socklen_t in getsockopt callJoszef Kadlecsik2006-06-231-3/+3
* set match negation bug fixedJoszef Kadlecsik2006-06-232-3/+3
* REDIRECT does not accept IP (Phil Oester <kernel@linuxace.com>)Phil Oester2006-06-201-0/+3
* Add new exit value to indicate concurrency issues (Jesper Dangaard Brouer <ha...Jesper Dangaard Brouer2006-06-192-2/+7
* trivial connlimit manpage fix (Phil Oester <kernel@linuxace.com>)Phil Oester2006-05-291-2/+2
* Use lowercase letters for match name (Simon Lodal <simonl@parknet.dk>)Simon Lodal2006-05-241-4/+4
* Add information about :<port> syntax (Evan Miller <evanm@frap.net>)Evan Miller2006-05-241-2/+3
* secmark: Add libip6t_CONNSECMARKJames Morris2006-05-243-1/+140
* D'oh .. I'm not too smart, forgot to add the new files in the previous patche...Patrick McHardy2006-05-246-0/+405
* secmark: Add libipt_CONNSECMARKJames Morris2006-05-241-1/+1
* secmark: Add libip6t_SECMARKJames Morris2006-05-241-1/+1
* secmark: Add libipt_SECMARKJames Morris2006-05-241-1/+1
* secmark: Add libselinux supportJames Morris2006-05-243-4/+36
* Add DCCP/SCTP support to multiport. Patch for kernel will go in 2.6.18.Patrick McHardy2006-04-284-16/+58
* Replace annoying "Something wrong... deleting dependencies" message by someth...Patrick McHardy2006-04-281-1/+1
* Don't overwrite errno with return value of setsockopt (which is -1 on error).Patrick McHardy2006-04-221-6/+2
* Revert incorrect fix for "Unknown error 4294967295" problemPatrick McHardyHarald Welte2006-04-221-2/+0
* When entering an invalid command (such as iptables -A INPUT -j MARK --set-markHarald Welte2006-04-211-0/+2
* In ip[6]tables.c, NUMBER_OF_OPT was increased to 12 for the OPT_COUNTERSPatrick McHardyHarald Welte2006-04-222-30/+32
* cmdflags is used in cmd2char() to return the option for a command. It uses theHarald Welte2006-04-212-4/+2
* [IPTABLES,IP6TABLES]: check invalid esp spi rangeYasuyuki KOZAKAI2006-04-152-0/+6
* [IP6TABLES] kill manual comparing protocol name with "ipv6-icmp".Yasuyuki KOZAKAI2006-04-151-3/+1
* fix loading shared library of ICMPv6 match.Yasuyuki KOZAKAI2006-04-153-1/+1
* [IPTABLES,IP6TABLES]: fix the path to detect esp/connbytes support in kernelHarald Welte2006-04-122-2/+2
* Correct iptables-save output of osf module (Daniel De Graaf)Daniel De Graaf2006-03-311-0/+8
* don't allow to specify protocol of IPv6 extension header (Yasuyuki Kozakai)Yasuyuki KOZAKAI2006-03-291-0/+16
* Multiple matches of the same type can be specified on the commandline.Joszef Kadlecsik2006-03-034-32/+84
* Make '-p all' a special case that is handled before calling getprotoent() (Cl...Harald Welte2006-02-112-2/+14
* fix double-free if a single match is used multiple times within a signle ruleHarald Welte2006-02-112-2/+6
* don't install libiptc.aHarald Welte2006-02-091-1/+2
* fix segfault or loading of invalid counters in ip[6]tables-restore (Olaf Remp...Harald Welte2006-02-092-2/+8
* make policy match compile independant of kernel headersv1.3.5Harald Welte2006-02-013-2/+6
* Some !%$!*##$@ has modified the kernel include/linux/netfilter_ipv4/ipt_sctp.hHarald Welte2006-02-011-0/+13
* fix ipt_conntrack compilation against very early (2.4.0) kernel releasesHarald Welte2006-02-011-1/+1
* remove other bits of old ip pool code, people should use ipset (ipset.netfilt...Harald Welte2006-02-015-323/+2
* remove ippoolHarald Welte2006-02-013-679/+0
* Prepare policy match for x_tables unification by making sure bothPatrick McHardy2006-01-317-16/+126
* fix 'save' (Michael Rash)Michael Rash2006-01-301-2/+2
* major manpage update (Yasuyuki Kozakai)Yasuyuki KOZAKAI2006-01-3027-88/+149
* Add 'copy+paste' support for 'state' and 'connmark' match, as well asHarald Welte2006-01-264-1/+535
* add note about deprecated stateHarald Welte2006-01-261-0/+2
* fix spelling 'adress' -> 'address' (Closes: #431) (MJ Anthony)Harald Welte2006-01-222-2/+2
* Fix "empty policy element" complaining in non-strict mode.Noticed by Tom Eastep2006-01-222-2/+4
* Clarify --tunnel-src/--tunnel-dst optionsPatrick McHardy2006-01-122-6/+10