Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | libxtables: prefix/order - move check_inverse to xtables.c | Jan Engelhardt | 2009-01-30 | 1 | -1/+1 |
| | | | | | | | This also adds a warning that intrapositional negation support is deprecated. Signed-off-by: Jan Engelhardt <jengelh@medozas.de> | ||||
* | src: remove inclusion of iptables.h | Jan Engelhardt | 2008-11-20 | 1 | -1/+1 |
| | | | | | | | | | iptables.h and ip6tables.h only include declarations internal to iptables (specifically iptables.c and ip6tables.c), as most of the public API has been moved to xtables.h a few months ago. Signed-off-by: Jan Engelhardt <jengelh@medozas.de> Signed-off-by: Patrick McHardy <kaber@trash.net> | ||||
* | src: use NFPROTO_ constants | Jan Engelhardt | 2008-11-18 | 1 | -1/+1 |
| | | | | | | | | Resync netfilter.h from the latest kernel and make use of the new NFPROTO_ constants that have been introduced. Signed-off-by: Jan Engelhardt <jengelh@medozas.de> Signed-off-by: Patrick McHardy <kaber@trash.net> | ||||
* | src: Update comments | Jan Engelhardt | 2008-09-01 | 1 | -8/+0 |
| | | | | | | | | A number of comments are redundant, some outdated and others outright wrong in their own way. Remove and fixup. Signed-off-by: Jan Engelhardt <jengelh@medozas.de> Signed-off-by: Patrick McHardy <kaber@trash.net> | ||||
* | Remove old functions, constants | Jan Engelhardt | 2008-04-15 | 1 | -6/+7 |
| | |||||
* | fix gcc warnings | Max Kellermann | 2008-01-29 | 1 | -1/+1 |
| | | | | Max Kellermann <max@duempel.org> | ||||
* | Unique names 4/6 | Jan Engelhardt | 2007-10-04 | 1 | -22/+16 |
| | | | | | | | | | | | Give symbols of libxt targets unique names (2/3). Adds unique prefixes to all functions (most of them - especially the hook functions) so that debugging programs can unambiguously map a symbol to an address. Also unifies the names of the xtables_match/xtables_target structs, (based upon libxt_connmark.c/libip6t_*.c). Signed-off-by: Jan Engelhardt <jengelh@gmx.de> | ||||
* | Delete empty ->final_check() functions | Jan Engelhardt | 2007-10-04 | 1 | -6/+0 |
| | | | | | | | Deletes empty ->final_check() functions, and makes ip[6]tables checks for NULL on these. Signed-off-by: Jan Engelhardt <jengelh@gmx.de> | ||||
* | Fix sparse warnings: non-ANSI function declarations, 0 used as pointer | Patrick McHardy | 2007-09-08 | 1 | -3/+3 |
| | |||||
* | Remove last vestiges of NFC (Peter Riley <Peter.Riley@hotpop.com>) | Peter Riley | 2007-09-02 | 1 | -1/+1 |
| | |||||
* | Make the option structures const. | Jan Engelhardt | 2007-07-30 | 1 | -1/+1 |
| | | | | Signed-off-by: Jan Engelhardt <jengelh@gmx.de> | ||||
* | Remove the .next=NULL field. This is automatically initialized to zero. | Jan Engelhardt | 2007-07-30 | 1 | -1/+0 |
| | | | | | | | I've kept .print=NULL and .save=NULL so it stands out (since iptables will do the print/save then). Signed-off-by: Jan Engelhardt <jengelh@gmx.de> | ||||
* | Fixes warning on compilation of iptables matches/targets | Yasuyuki KOZAKAI | 2007-07-24 | 1 | -3/+3 |
| | | | | | | | | | This changes the type of arguments as follows - ipt_ip * -> void * - ipt_entry * -> void * This patch doesn't change multiport, DNAT, SNAT, MASQUERADE, REDIRECT because these need more changes (casting void * variable with intended type) | ||||
* | Replaces ipt_entry_* with xt_entry_* in matches/targets | Yasuyuki KOZAKAI | 2007-07-24 | 1 | -4/+4 |
| | |||||
* | tcp-rst is the alias, not tcp-reset (Torsten Hilbrich) | Harald Welte | 2005-11-22 | 1 | -1/+1 |
| | |||||
* | pull out pmtu changes to fix compilation issues | Harald Welte | 2005-04-15 | 1 | -120/+3 |
| | |||||
* | add REJECT with icmp-frag-needed (Florian Lohoff) | Florian Lohoff | 2005-04-10 | 1 | -3/+120 |
| | |||||
* | Kill NFC_* stuff in iptables (Pablo Neira <pablo@eurodev.net>) | Pablo Neira | 2005-02-14 | 1 | -2/+0 |
| | | | | Fixes build with conntrack event patch for 2.6 | ||||
* | Pablo Neira: extensions conversion to C99 structure initialization | Pablo Neira | 2004-12-28 | 1 | -14/+13 |
| | | | | (I removed the revision stuff for the moment, but this needs to go in before the code moves too much --RR) | ||||
* | finally commit the overly delayed RFC1812 admin prohibited option | Harald Welte | 2003-05-24 | 1 | -1/+15 |
| | |||||
* | globally replace NETFILTER_VERSION with IPTABLES_VERSION to have consistent ↵ | Harald Welte | 2002-05-29 | 1 | -1/+1 |
| | | | | naming | ||||
* | Fix 'iptables -p !' bug (segfault when `!' used without argument) | Harald Welte | 2002-03-14 | 1 | -1/+1 |
| | |||||
* | added break; to eliminate gcc3 warning | Marc Boucher | 2002-01-19 | 1 | -0/+1 |
| | |||||
* | - added patch to support statically linking of iptables | Harald Welte | 2001-08-06 | 1 | -0/+1 |
| | | | | - iptables-save/-restore is no longer experimental | ||||
* | changed order of port_unreachable / prot_unreachable to reflect kernel enum | Harald Welte | 2001-06-16 | 1 | -2/+2 |
| | |||||
* | fixed bug in save() function causing it to print '--reject-with reject-with' ↵ | Harald Welte | 2001-05-12 | 1 | -1/+6 |
| | | | | in all cases | ||||
* | Stop --reject-with echo-reply (won't be supported soon). | Rusty Russell | 2000-12-18 | 1 | -0/+7 |
| | |||||
* | Remove ICMP packet-filtered option (deprecated). | Rusty Russell | 2000-07-12 | 1 | -2/+2 |
| | | | | Add tests for RST generation. | ||||
* | Aligning matchsize and targetsize now responsibility of extension writers | Rusty Russell | 2000-07-03 | 1 | -2/+2 |
| | | | | (PPC fix). | ||||
* | REJECT enhancements. | Rusty Russell | 2000-06-20 | 1 | -1/+7 |
| | |||||
* | Changes to allow matching (for delete) on part of a rule, for rules which | Rusty Russell | 2000-04-19 | 1 | -0/+1 |
| | | | | change in the kernel (eg. ipt_limit). | ||||
* | Testsuite update. | Rusty Russell | 2000-03-24 | 1 | -3/+1 |
| | |||||
* | Makefile fixes for release.v1.0.0-alpha | Rusty Russell | 2000-03-20 | 1 | -17/+17 |
| | | | | Whitespace cleanups. | ||||
* | reorganized tree after kernel merge | Marc Boucher | 2000-03-20 | 1 | -0/+159 |