SEARCH
NEW RPMS
DIRECTORIES
ABOUT
FAQ
VARIOUS
BLOG

 
 
Changelog for SuSEfirewall2-3.6.304-1.1.noarch.rpm :

* Mon May 06 2013 cfarrellAATTsuse.com- license update: GPL-2.0 Various GPL-2.0 (only) licensed files
* Fri May 03 2013 meissnerAATTsuse.com- clarify what the default is in FW_MASQ_NETS (bnc#817233)- removed the --rttl option in recent matches, as this could also be used by attackers (bnc#800719)
* Tue Jan 29 2013 lnusselAATTsuse.de- do not add dependency information about YaST2 Second Stage (bnc#800365)
* Thu Jan 17 2013 lnusselAATTsuse.de- fix defaultl value docu for FW_PROTECT_FROM_INT (bnc#798834)
* Thu Dec 13 2012 lnusselAATTsuse.de- move to /usr, remove init scripts
* Wed Dec 12 2012 lnusselAATTsuse.de- adjust for starting via systemd service files- move lock files to /run- just CT instead of NOTRACK (bnc#793459)
* Tue Sep 11 2012 lnusselAATTsuse.de- getdevinfo is gone as per commit 0c5ac93 (bnc#777271)
* Fri Jul 13 2012 lnusselAATTsuse.de- honor FW_IPv6 setting also in debug mode (bnc#769411)
* Tue Jun 19 2012 lnusselAATTsuse.de- fix logging in test mode
* Mon Jun 18 2012 lnusselAATTsuse.de- allow icmpv6 in FW_SERVICES_
*_
*
* Mon Jun 18 2012 lnusselAATTsuse.de- allow ICMPv6 Multicast Listener Query (bnc#767392)
* Tue May 29 2012 lnusselAATTsuse.de- fix typo spotted by Frederic
* Wed Jan 18 2012 lnusselAATTsuse.de- assume all interface names are correct (bnc#739084)
* Wed Dec 14 2011 lnusselAATTsuse.de- fix forward masquerading (bnc#736205)- compat syntax for negated options no longer works (bnc#660156, bnc#731088)- enhance debug mode
* Mon Nov 07 2011 lnusselAATTsuse.de- use /sbin/rpcinfo as /usr/sbin/rpcinfo is gone (bnc#727438)
* Wed Nov 02 2011 lnusselAATTsuse.de- set SYSTEMD_NO_WRAP for status (bnc#727445)
* Fri Oct 14 2011 lnusselAATTsuse.de- fix manual rcSuSEfirewall2 stop with sytemd (bnc#717583)
* Tue Oct 04 2011 lnusselAATTsuse.de- fix typo (bnc#721845)- atomic zone status writing
* Sat Sep 17 2011 jengelhAATTmedozas.de- Remove redundant tags/sections from specfile
* Wed Sep 07 2011 lnusselAATTsuse.de- sanitize FW_ZONE_DEFAULT (bnc#716013)- add warning about iptables-batch to SuSEfirewall2-custom- fix warning about /proc/net/ip_tables_names not readable- don\'t install input rules for interfaces in default zone- Add hook fw_custom_after_finished- update FAQ (bnc#694464)- clean up overrides when stopping the firewall (bnc#630961)- change default FW_LOG_ACCEPT_CRIT to \"no\"- allow redir without port specification- make FW_SERVICES_{REJECT,DROP}_
* take precedende before ACCEPT (bnc#671997)- fix zonein and zoneout parameters- fix reverse direction of forwarding rules (bnc#679192)
* Tue Feb 01 2011 lnusselAATTsuse.de- introduce rpcusers file to allow statd to run as non-root (bnc#668553)
* Wed Jan 19 2011 lnusselAATTsuse.de- add zonein and zoneout parameters for FW_FORWARD- fix typos
* Mon Jan 10 2011 lnusselAATTsuse.de- don\'t start in runlevel 4 by default (bnc#656520)- cut off long zone names (bnc#644527)- fix and enhance output of log command (bnc#663262)
* Thu Dec 02 2010 lnusselAATTsuse.de- don\'t unload rules when using systemd
* Tue Nov 16 2010 lnusselAATTsuse.de- list some known rpc services as Should-Start- don\'t filter outgoing packets at all- fix an example (bnc#641907)- fix status check in SuSEfirewall2_init (bnc#628751)
* Mon Aug 16 2010 lnusselAATTsuse.de- don\'t use fillup anymore as it keeps corrupting the config file (bnc#340926)
* Tue Jun 29 2010 lnusselAATTsuse.de- remove \"batch committing...\" message- read defaults from separate file- warn if highports config options are set- finally drop \'highports\' misfeature- remove kernel ipv6 module detection (bnc#617033)- silence warning about default zone (bnc#616841)- SuSEfirewall2-open: don\'t add values multiple times- Use multiprotocol xt_conntrack
* Mon May 31 2010 lnusselAATTsuse.de- only directories in /sys/class/net are real interfaces (bnc#609810)
* Fri Mar 19 2010 lnusselAATTsuse.de- add entry about drbd to FAQ- update docu- implement FW_BOOT_FULL_INIT
* Tue Feb 16 2010 lnusselAATTsuse.de- use new versioning scheme after switch of repo to git- update and rebuild docu- remove really old rc.config conversion code from spec file
* Tue Sep 15 2009 lnusselAATTsuse.de- fix spelling error in sysconfig file (bnc#537427)- polishing of log drop policy (bnc#538053)
* drop multicast packets silently
* separate drop rule for broadcast packets at end of chain
* only consider NEW udp packets as critical
* don\'t log INVALID packets as critical
* Fri Aug 21 2009 lnusselAATTsuse.de- implement runtime override of interface zones- allow disabling NOTRACK rules on lo (bnc#519526)
* Fri Jul 17 2009 lnusselAATTsuse.de- remove chkconfig calls (bnc#522268)
* Thu Jul 09 2009 lnusselAATTsuse.de- add note about use as bridging firewall- allow to set FW_ZONE_DEFAULT via config file- deprecate fw_custom_before_antispoofing and fw_custom_after_antispoofing, use fw_custom_after_chain_creation instead
* Tue Jun 09 2009 lnusselAATTsuse.de- add note that ulog doesn\'t work with IPv6 (bnc#442756)- fix version number in help text- allow service files to specify kernel modules and allow related packets- silence an error from bash if a service config file is not available (bnc#487870)- better wording for BROADCAST in template- update firewall hook script (patch by Marius)
 
ICM