61 Commits (821170133fc75f42c73b4d11761d798eae7e4733)

Author SHA1 Message Date
Nicolas Thill 2c8010b2dc make the whole iptables/netfiter modular (closes: #3871, #3527) 16 years ago
Felix Fietkau e9ea28b0af use $(FPIC) in a few places where it matters 17 years ago
John Crispin 21bbdc24c3 adds a new uci firewall - iptbales and netfilter packages need to be rewrapped when we switch to this firewall as default - there are some examples in the file /etc/config/firewall - iptables-save/restore are still missing - hotplug takes care of adding/removing netdevs during runtime - misisng features ? wishes ? let me know ... 17 years ago
Gabor Juhos f9518d9a74 netfilter/iptables: enable IMQ on 2.6.25 17 years ago
Florian Fainelli 82247228ea We do not need to make the experimental/install-experimental targets starting with 1.4.x version 17 years ago
Gabor Juhos 1b90498e69 IMQ is not yet available on 2.6.25 17 years ago
Gabor Juhos d80f43d15f update iptables to 1.4.0 (2.6 kernels only), refresh kernel patches 17 years ago
Florian Fainelli 52315c5150 Fix layer7 user-space iptables compilation (#3307) 17 years ago
Gabor Juhos 4e45a1d1ac iptables: remove obsolete patch 17 years ago
Felix Fietkau c89de79512 move /etc/config/firewall to /etc/firewall.config to prevent it from interfering with uci - yes, this beast really needs a rewrite :) 17 years ago
Felix Fietkau 0cf1a58282 Here comes the new UCI. Enjoy :) 17 years ago
Felix Fietkau 2a45adfcda remove uninstalldev templates (no longer necessary) 17 years ago
Felix Fietkau 93575b53a7 Use $(CP) instead of $(INSTALL_BIN) for binaries. 17 years ago
Tim Yardley 85b17a4e9e update stripped subset of l7 patterns to 11-03-2007 patterns 17 years ago
Florian Fainelli 9d7192e5fa Add a boolean to allow NAT from LAN or not, default to nat LAN (#2535) 17 years ago
Gabor Juhos 79712043cc iptables: update description of the iptables-mod-ipopt 17 years ago
Florian Fainelli ada8e5dd95 Only masquerade LAN, other settings need manual tweaking 17 years ago
Florian Fainelli 304d5c8845 Only masquerade non routable addresses (#2535) 17 years ago
Florian Fainelli 109d5fbca4 Update description, iptables-mod-ipsec includes libipt_policy.so 17 years ago
Gabor Juhos 8309e3dff2 add TARPIT support to netfilter/iptables * netfilter: add the xt_TARPIT target module required by xt_CHAOS * include/netfilter.mk: reorder, xt_CHAOS depends on xt_TARPIT and xt_DELUDE * iptables: add libipt_TARPIT to the kmod-ipt-extra package, bump release number * original patchset can be found [http://tinyurl.com/2mjk2kx here] 17 years ago
Felix Fietkau 969ac7459e add $(STAGING_DIR) as argument to the InstallDev template and update packages accordingly - this way we can reuse InstallDev to automatically generate UninstallDev or create -dev packages 17 years ago
Nicolas Thill 3a713ff202 move exec permissions fix at Build/Prepare stage 17 years ago
Nicolas Thill 34bb4638e7 move package description to a separate definition, remove it when DESCRIPTION=TITLE 17 years ago
Florian Fainelli 22282193a9 Package ip6tables-utils as well (#2318) 17 years ago
Tim Yardley 782d02ed1b iptables: refresh patches to 1.3.8 18 years ago
Florian Fainelli 2e4f6093c6 Fix the ip6tables dependency (#2079) 18 years ago
Tim Yardley 5f6dfc231a move to iptables 1.3.8 18 years ago
Felix Fietkau 2cc2d7707b make the firewall script run after the network script again (required for working with dynamically assigned interfaces), include the network state 18 years ago
Florian Fainelli 01b4fd853a Initialise firewall before network (#1988) 18 years ago
Tim Yardley 35d1063a75 package ipset for use 18 years ago
Felix Fietkau 04324c48cf upgrade a few packages to newer versions (includes patch by kaloz) - preparation for 2.6.22 18 years ago
Felix Fietkau 9114220553 refresh all package patches in the buildroot using quilt 18 years ago
Florian Fainelli 908b616d8e Add iprange (#1799) 18 years ago
Imre Kaloz 615e8af841 break trunk temporary - upgrade to 2.6.21.1 and iptables 1.3.7 18 years ago
Florian Fainelli cd65230eea Add raw and NOTRACK targets (#1583) 18 years ago
Felix Fietkau 235692a7d6 fix iptables extension issue with mac os x builds 18 years ago
Felix Fietkau c05a061e4e fix a problem with the firewall script (multicast traffic could produce packet loss) 18 years ago
Felix Fietkau 8e85262a8b improve autorebuild for iptables when the kernel config changes 18 years ago
Felix Fietkau 24faf55360 add file type autodetection for the unpack command and nuke PKG_CAT:= in lots of places 18 years ago
Felix Fietkau 1d307eea87 add a default for PKG_BUILD_DIR and PKG_INSTALL_DIR (will use KERNEL_BUILD_DIR if kernel.mk is included, BUILD_DIR otherwise) 18 years ago
Tim Yardley ccfa4a7af6 trunk.. same deal as changeset:6526 18 years ago
Felix Fietkau 30ef579f48 make the iptables package robust to kernel config changes 18 years ago
Florian Fainelli 780712e30e Add ipt_CLASSIFY target for 2.4 kernels (#1338) 18 years ago
Felix Fietkau 8e88bb54ba port [6229] to kamikaze 18 years ago
Nicolas Thill 574c87a244 fix chaostables patch (closes: #1246) 18 years ago
Florian Fainelli acf6ec373e Add chaostable from #1187, also enable netfilter modules for ixp4xx. 18 years ago
Nicolas Thill bed47be36c more use of the INSTALL_DIR variable 18 years ago
Felix Fietkau 34272dbc04 fix iptables warning about 'wierd' interface names (#1082) 18 years ago
Florian Fainelli 343b935afa Forgot kmod-ipt-imq dependency (#1076) 18 years ago
Felix Fietkau 4323774d59 prepare for moving part of the firewall to hotplug. created new chains {input,forwarding,prerouting}_wan for wan port forwardings and updated the examples. syntax of /etc/config/firewall unchanged and old firewall.user files are still compatible 18 years ago