summaryrefslogtreecommitdiffstats
path: root/src
Commit message (Expand)AuthorAgeFilesLines
* filter: check if kernel-space filtering is availablePablo Neira Ayuso2008-09-172-10/+11
* cleanup: Linux kernel version checkingPablo Neira Ayuso2008-09-171-6/+1
* filter: fix NAT detection tweakPablo Neira Ayuso2008-09-162-18/+3
* ftfw: check for malformed ack and nack messagesPablo Neira Ayuso2008-09-161-0/+8
* cli: insert `conntrack-tools' string in help and error messagesPablo Neira Ayuso2008-08-121-4/+4
* cli: check for missing arguments in getopt_longPablo Neira Ayuso2008-08-121-7/+13
* cli: remove unrequired \n in error messagePablo Neira Ayuso2008-08-121-1/+1
* cli: remove duplicated optarg checkingPablo Neira Ayuso2008-08-121-36/+0
* netlink: avoid errors related to the expected bit handlingPablo Neira Ayuso2008-08-071-2/+15
* cache iterators: commit master entries before related onesPablo Neira Ayuso2008-08-072-5/+36
* cache iterators: rework cache_reset_timersPablo Neira Ayuso2008-08-074-20/+25
* netlink: add getter and check existence functionsPablo Neira Ayuso2008-08-072-2/+31
* cache_iterators: do not report ENOENT in cache_reset_timersPablo Neira Ayuso2008-08-021-1/+0
* conntrackd: add -t option to shorten conntrack timeoutsPablo Neira Ayuso2008-08-023-0/+46
* ftfw: show consistent information to users for problem diagnosingPablo Neira Ayuso2008-08-013-9/+26
* fix broken normal deletion in cachesPablo Neira Ayuso2008-08-012-41/+40
* fix: wrong use of timersub in cache_timerPablo Neira Ayuso2008-08-011-1/+1
* fix: use %zu instead of %u for size_tPablo Neira Ayuso2008-08-011-1/+1
* commit: retry at least once if we hit ETIME or ENOMEMEric Leblond2008-08-011-1/+18
* add more sanity checks in the input pathPablo Neira Ayuso2008-08-012-8/+38
* CLI: add new option --buffer-size for -EPablo Neira Ayuso2008-07-291-18/+43
* filter: skip protocol state filtering if state not presentPablo Neira Ayuso2008-07-291-0/+3
* log: syslog displays the entry that triggers the errorPablo Neira Ayuso2008-07-241-2/+9
* add support for kernel-space filtering via BSFPablo Neira Ayuso2008-07-232-0/+104
* Major rework of the user-space event filteringPablo Neira Ayuso2008-07-2210-323/+457
* fix xml output: wrap output with one root elementPablo Neira Ayuso2008-06-221-4/+44
* use only the original tuple to check if a conntrack is presentPablo Neira Ayuso2008-06-161-1/+9
* fix unsecure usage of printf and include limits.h (PATH_MAX and INT_MAX)Albin Tonerre2008-06-153-1/+3
* check if entries already exist in kernel before injectionPablo Neira Ayuso2008-06-151-15/+24
* delay the closure of the dump descriptor to fix assertion with cache_wtconntrack-tools-0.9.7Pablo Neira Ayuso2008-05-311-1/+3
* increase deletion stats when the timer is scheduled in cache_del_timeout()Pablo Neira Ayuso2008-05-311-2/+7
* define SO_[RCV|SND]BUFFORCE if not setPablo Neira Ayuso2008-05-271-0/+8
* remove secmark support for conntrackdPablo Neira Ayuso2008-05-272-3/+0
* fix leak in cache_destroy(): release objects before destroying the cachePablo Neira Ayuso2008-05-261-0/+1
* rework the HELLO logic inside FT-FWPablo Neira Ayuso2008-05-262-7/+47
* add best effort replication protocol (aka NOTRACK)Pablo Neira Ayuso2008-05-255-2/+203
* add eventfd emulation to communicate receiver -> senderPablo Neira Ayuso2008-05-254-8/+100
* only allow the use of --secmark for listing (filtering)Pablo Neira Ayuso2008-05-222-3/+5
* check for missing IPv6 address before hashingPablo Neira Ayuso2008-05-211-0/+8
* Updates (-U) show the effect of the operation in the conntrack entryPablo Neira Ayuso2008-05-201-11/+36
* add Mcast[Snd|Rcv]SocketBuffer clauses to tune multicast socket buffersPablo Neira Ayuso2008-05-204-1/+50
* improve network message sanity checkingsPablo Neira Ayuso2008-05-183-38/+57
* - remove (misleading) counters and use information from the statistics modePablo Neira Ayuso2008-05-162-73/+7
* Fix reorder possible reordering of destroy messages under message omission. T.../C=EU/ST=EU/CN=Pablo Neira Ayuso/emailAddress=pablo@netfilter.org2008-04-297-47/+100
* rework of the FT-FW approach/C=EU/ST=EU/CN=Pablo Neira Ayuso/emailAddress=pablo@netfilter.org2008-04-264-95/+233
* add more verbose error notification when the injection of a conntrack fails/C=EU/ST=EU/CN=Pablo Neira Ayuso/emailAddress=pablo@netfilter.org2008-04-164-12/+33
* o fix NAT filtering via --src-nat and --dst-nat (reported by K.Oledzki)/C=EU/ST=EU/CN=Pablo Neira Ayuso/emailAddress=pablo@netfilter.org2008-04-161-40/+52
* fix conntrack -U -p tcp [...]/C=EU/ST=EU/CN=Pablo Neira Ayuso/emailAddress=pablo@netfilter.org2008-04-131-10/+7
* This is a major improvement of the conntrack command line tool:/C=EU/ST=EU/CN=Pablo Neira Ayuso/emailAddress=pablo@netfilter.org2008-04-131-69/+220
* o simplify parameter-handling code/C=EU/ST=EU/CN=Pablo Neira Ayuso/emailAddress=pablo@netfilter.org2008-04-121-217/+138