]> git.proxmox.com Git - pve-firewall.git/blame - debian/changelog
config defaults: macfilter defaults to on
[pve-firewall.git] / debian / changelog
CommitLineData
fba392f2
TL
1pve-firewall (4.2-5) bullseye; urgency=medium
2
3 * fix #3677 ipset get chains: handle newer ipset output for actual
4 change detection
5
6 -- Proxmox Support Team <support@proxmox.com> Thu, 04 Nov 2021 16:37:13 +0100
7
bd63a439
TL
8pve-firewall (4.2-4) bullseye; urgency=medium
9
10 * re-build to avoid issues stemming from semi-broken systemd-debhelper version
11
12 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Oct 2021 10:39:05 +0200
13
2a2b81b4
TL
14pve-firewall (4.2-3) bullseye; urgency=medium
15
16 * fix #2721: remove the (nowadays) bogus reject for TCP port 43 from the
17 default drop and reject actions
18
19 -- Proxmox Support Team <support@proxmox.com> Fri, 10 Sep 2021 13:00:07 +0200
20
dcdbb559
TL
21pve-firewall (4.2-2) bullseye; urgency=medium
22
23 * re-set relevant sysctls on every apply round
24
25 -- Proxmox Support Team <support@proxmox.com> Mon, 21 Jun 2021 11:31:42 +0200
26
ce9cfab8
TL
27pve-firewall (4.2-1) bullseye; urgency=medium
28
29 * fix #967: source: dest: limit length
30
31 * re-build for Debian 11 Bullseye based releases (Proxmox VE 7)
32
33 * fix #2358: allow --<opt> in firewall rule config files
34
35 -- Proxmox Support Team <support@proxmox.com> Wed, 12 May 2021 20:32:30 +0200
36
8a4e5b69
TL
37pve-firewall (4.1-3) pve; urgency=medium
38
39 * fix #2773: ebtables: keep policy of custom chains
40
41 * introduce new icmp-type parameter
42
43 -- Proxmox Support Team <support@proxmox.com> Fri, 18 Sep 2020 16:51:27 +0200
44
70718917
TL
45pve-firewall (4.1-2) pve; urgency=medium
46
47 * revert: rules: verify referenced security group exists
48
49 -- Proxmox Support Team <support@proxmox.com> Wed, 06 May 2020 17:41:36 +0200
50
c5530455
TL
51pve-firewall (4.1-1) pve; urgency=medium
52
53 * logging: add missing log message for inbound rules
54
55 * fix #2686: avoid adding 'arp-ip-src' IP filter if guests uses DHCP
56
57 * IPSets: parse the CIDR before checking for duplicates
58
59 * verify that a referenced security group exists
60
61 * ICMP: fix iptables-restore failing if ICMP-type values bigger than '255'
62
63 * ICMP: allow one to specify the 'echo-reply' (0) type also as integer
64
65 * improve handling concurrent (parallel) access and modifications to rules
66
67 -- Proxmox Support Team <support@proxmox.com> Mon, 04 May 2020 15:01:57 +0200
68
56a47140
TL
69pve-firewall (4.0-10) pve; urgency=medium
70
71 * macros: add macro for Proxmox Mail Gateway web interface
72
73 * api node: always pass cluster conf to node FW parser to fix false positive
74 error message about non existing aliases, or IP sets, when querying the
75 node FW options GET API call.
76
77 * grammar fix: s/does not exists/does not exist/g
78
79 -- Proxmox Support Team <support@proxmox.com> Mon, 27 Jan 2020 19:25:49 +0100
80
5162c268
TL
81pve-firewall (4.0-9) pve; urgency=medium
82
83 * ensure port range used for offline storage migration and insecure migration
84 traffic is allowed by default rule set.
85
86 -- Proxmox Support Team <support@proxmox.com> Tue, 03 Dec 2019 08:12:20 +0100
87
5ac03b1c
WB
88pve-firewall (4.0-8) pve; urgency=medium
89
90 * increase default nf_conntrack_max to the kernel's default
91
92 * fix some "use of uninitialized value" warnings when updating CIDRs
93
94 * update schema documentation
95
96 * add explicit dependency on libpve-cluster-perl
97
98 * add support for "raw" tables
99
100 * add options for synflood protection for host firewall:
101 - nf_conntrack_tcp_timeout_syn_recv
102 - protection_synflood: boolean
103 - protection_synflood_rate: SYN rate limit (default 200 per second)
104 - protection_synflood_burst: SYN burst limit (default 1000)
105
106 -- Proxmox Support Team <support@proxmox.com> Mon, 18 Nov 2019 13:48:20 +0100
107
bd368955
FG
108pve-firewall (4.0-7) pve; urgency=medium
109
110 * only add VM chains and rules if VM firewall is enabled
111
112 -- Proxmox Support Team <support@proxmox.com> Wed, 7 Aug 2019 10:55:06 +0200
113
c8f3e1ee
TL
114pve-firewall (4.0-6) pve; urgency=medium
115
116 * firewall macros: add new Ceph protocol v2 port while keeping v1 port
117
118 -- Proxmox Support Team <support@proxmox.com> Tue, 23 Jul 2019 18:57:48 +0200
119
6fc572dc
TL
120pve-firewall (4.0-5) pve; urgency=medium
121
122 * don't use any base path at all for calls to external binaries to make use
123 compativle with bot, /usr merged and unmerged setups
124
125 -- Proxmox Support Team <support@proxmox.com> Fri, 12 Jul 2019 11:47:53 +0200
126
b1379400
TL
127pve-firewall (4.0-4) pve; urgency=medium
128
129 * ebtables: remove PVE chains properly
130
131 * ebtables: treat chain deletion as change
132
133 * use /usr/sbin as base path
134
135 -- Proxmox Support Team <support@proxmox.com> Thu, 11 Jul 2019 19:40:01 +0200
136
9e01d77d
TL
137pve-firewall (4.0-3) pve; urgency=medium
138
139 * Create corosync firewall rules independently of localnet~
140
141 * Display corosync rule info on localnet call
142
143 -- Proxmox Support Team <support@proxmox.com> Thu, 04 Jul 2019 15:56:11 +0200
144
9429bd35
TL
145pve-firewall (4.0-2) pve; urgency=medium
146
147 * fix systemd warning about PIDFile directory
148
149 * fix CT rule generation with ipfilter set
150
151 * pve-firewall service: update-alternative iptables and ebtables to working
152 legacy versions
153
154 -- Proxmox Support Team <support@proxmox.com> Mon, 24 Jun 2019 20:43:21 +0200
155
6b9da9b0
TL
156pve-firewall (4.0-1) pve; urgency=medium
157
158 * re-build for Debian Buster / PVE 6
159
160 -- Proxmox Support Team <support@proxmox.com> Tue, 21 May 2019 22:28:55 +0200
161
dd7d737b
TL
162pve-firewall (3.0-21) unstable; urgency=medium
163
164 * fix ipv6 PVEFW-reject
165
166 * fix #2193: arpfilter: CT: remove mask from net IP/CIDR to avoid
167 ebtables doing the wrong thing here
168
169 -- Proxmox Support Team <support@proxmox.com> Wed, 08 May 2019 10:09:31 +0000
170
bbf77725
TL
171pve-firewall (3.0-20) unstable; urgency=medium
172
173 * use IPCC to read config and rule files, if the are backed by pmxcfs which
174 has better handling for pmxcfs restarts
175
176 * fix #2178: endless loop on ipv6 extension headers
177
178 -- Proxmox Support Team <support@proxmox.com> Fri, 19 Apr 2019 05:10:13 +0000
179
baba607a
TL
180pve-firewall (3.0-19) unstable; urgency=medium
181
182 * ebtables: add arp filtering
183
184 * fix: #2123 Logging of user defined firewall rules
185
186 * fix Razor macro
187
188 * allow to enable/disable and modify cluster wide log ratelimits
189
190 -- Proxmox Support Team <support@proxmox.com> Tue, 02 Apr 2019 11:15:16 +0200
191
d8ea08e3
TL
192pve-firewall (3.0-18) unstable; urgency=medium
193
194 * fix #1606: Add nf_conntrack_allow_invalid option
195
196 * log reject : add space after policy REJECT like drop
197
198 * fix #1891: Add zsh command completion for pve-firewall
199
200 -- Proxmox Support Team <support@proxmox.com> Mon, 04 Mar 2019 10:27:01 +0100
201
91d88bc5
TL
202pve-firewall (3.0-17) unstable; urgency=medium
203
204 * fix #2005: only allow ascii port digits
205
206 * fix #2004: do not allow backwards ranges
207
208 * add conntrack logging via libnetfilter_conntrack and allow one to enable
209 it through the firewall host configuration
210
211 -- Proxmox Support Team <support@proxmox.com> Wed, 09 Jan 2019 16:56:17 +0100
212
81d13a9d
TL
213pve-firewall (3.0-16) unstable; urgency=medium
214
215 * api/rules: fix macro return type
216
217 -- Proxmox Support Team <support@proxmox.com> Fri, 30 Nov 2018 16:02:59 +0100
218
bed701bc
TL
219pve-firewall (3.0-15) unstable; urgency=medium
220
221 * fix #1971: display firewall rule properties
222
223 -- Proxmox Support Team <support@proxmox.com> Fri, 23 Nov 2018 14:01:33 +0100
224
a24b157b
WB
225pve-firewall (3.0-14) unstable; urgency=medium
226
227 * fix #1841: avoid ebtable reloads when containers have multiple network
228 interfaces
229
230 -- Proxmox Support Team <support@proxmox.com> Fri, 24 Aug 2018 10:51:04 +0200
231
cf7dd94b
WB
232pve-firewall (3.0-13) unstable; urgency=medium
233
234 * avoid unnecessary reloads of ebtable ruleset
235
236 -- Proxmox Support Team <support@proxmox.com> Thu, 28 Jun 2018 14:47:16 +0200
237
dd03bf6e
WB
238pve-firewall (3.0-12) unstable; urgency=medium
239
240 * fix deleted iptables chains not being properly detected as a change
241
242 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Jun 2018 12:01:02 +0200
243
587a0f20 244pve-firewall (3.0-11) unstable; urgency=medium
a3a51dad
TL
245
246 * #1764: rename 'ebtales_enable' option to 'ebtables'
247
587a0f20 248 -- Proxmox Support Team <support@proxmox.com> Wed, 06 Jun 2018 16:18:13 +0200
a3a51dad 249
423b86ef
WB
250pve-firewall (3.0-10) unstable; urgency=medium
251
252 * fix #1764: handle existing ebtables rules and allow disabling ebtables
253
254 * ebtables handling can be disabled via /etc/pve/firewall/cluster.fw's new
255 ebtables_enable option.
256
257 -- Proxmox Support Team <support@proxmox.com> Tue, 29 May 2018 15:14:33 +0200
258
567e58ce
WB
259pve-firewall (3.0-9) unstable; urgency=medium
260
261 * fix creation of ebltables FORWARD rule entry
262
263 -- Proxmox Support Team <support@proxmox.com> Thu, 17 May 2018 14:41:27 +0200
264
ea0d59ed
WB
265pve-firewall (3.0-8) unstable; urgency=medium
266
267 * add ebtables support for better MAC filtering
268
269 -- Proxmox Support Team <support@proxmox.com> Wed, 11 Apr 2018 14:25:41 +0200
270
9a19ec81
WB
271pve-firewall (3.0-7) unstable; urgency=medium
272
273 * support distinct source and destination multi-port matching
274
275 * multi-port matching: when specifying the same list of ports for source and
276 destination require them both to match, rather than one of them, as this
277 was rather unexpected behavior
278
279 -- Proxmox Support Team <support@proxmox.com> Mon, 12 Mar 2018 14:58:08 +0100
280
8c41d444
DM
281pve-firewall (3.0-6) unstable; urgency=medium
282
283 * fix #1319: don't fail postinst with masked service
284
285 * debian: switch to compat 9, drop init scripts, drop preinst
286
287 * check multiport limit in port ranges
288
289 * build: use git rev-parse for GITVERSION
290
291 -- Proxmox Support Team <support@proxmox.com> Thu, 08 Mar 2018 13:53:11 +0100
292
4299c35f
WB
293pve-firewall (3.0-5) unstable; urgency=medium
294
295 * fix issue with disabled flag not being honored within groups
296
297 -- Proxmox Support Team <support@proxmox.com> Thu, 07 Dec 2017 08:31:42 +0100
298
a19d4127
WB
299pve-firewall (3.0-4) unstable; urgency=medium
300
301 * fix issues with ipsets reloading unnecessarily or too late
302
303 * fix some typos in the logs
304
305 -- Proxmox Support Team <support@proxmox.com> Thu, 16 Nov 2017 11:41:56 +0100
306
c0c71b1b
WB
307pve-firewall (3.0-3) unstable; urgency=medium
308
309 * Fix #1492: logger: use current timestamp if the packet doesn't have one
310
311 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Sep 2017 14:43:06 +0200
312
4f7a4bdd
WB
313pve-firewall (3.0-2) unstable; urgency=medium
314
315 * Fix #1446: remove masks in case the package had previously been removed but
316 not purged.
317
318 * improve logging on errors in the firewall configuration
319
320 * forbid trailing commas in lists as iptables-restore doesn't support them
321
322 -- Proxmox Support Team <support@proxmox.com> Mon, 17 Jul 2017 15:24:40 +0200
323
29a94c79
FG
324pve-firewall (3.0-1) unstable; urgency=medium
325
326 * rebuild for Debian Stretch
327
328 -- Proxmox Support Team <support@proxmox.com> Thu, 9 Mar 2017 14:04:17 +0100
329
df67a3dc
DM
330pve-firewall (2.0-33) unstable; urgency=medium
331
332 * ipset: don't allow zero-prefix entries
333
334 -- Proxmox Support Team <support@proxmox.com> Tue, 29 Nov 2016 12:18:04 +0100
335
dc643b4d
DM
336pve-firewall (2.0-32) unstable; urgency=medium
337
338 * improve search for local-network
339
340 -- Proxmox Support Team <support@proxmox.com> Tue, 29 Nov 2016 06:35:08 +0100
341
45f206fd
DM
342pve-firewall (2.0-31) unstable; urgency=medium
343
344 * don't try to apply ports to rules which don't support them
345
346 -- Proxmox Support Team <support@proxmox.com> Thu, 06 Oct 2016 08:31:51 +0200
347
2ea28d0c
DM
348pve-firewall (2.0-30) unstable; urgency=medium
349
350 * add multicast DNS to the list of Macros
351
352 * add missing parameter descriptions
353
354 * build-depends: add dh-systemd
355
356 -- Proxmox Support Team <support@proxmox.com> Fri, 16 Sep 2016 08:53:16 +0200
357
b65d13d9
DM
358pve-firewall (2.0-29) unstable; urgency=medium
359
360 * prevent overwriting ipsets/sec. groups by renaming
361
362 -- Proxmox Support Team <support@proxmox.com> Fri, 03 Jun 2016 16:46:10 +0200
363
d0f3bb08
DM
364pve-firewall (2.0-28) unstable; urgency=medium
365
366 * use pve-common's ipv4_mask_hash_localnet
367
5c53cde4
DC
368 * fix allowed group name length
369
370 * make group digest stable
371
d0f3bb08
DM
372 -- Proxmox Support Team <support@proxmox.com> Fri, 03 Jun 2016 11:01:47 +0200
373
76a57e1a
DM
374pve-firewall (2.0-27) unstable; urgency=medium
375
376 * fix #972: make PVEFW-FWBR-* rule order stable
377
378 -- Proxmox Support Team <support@proxmox.com> Tue, 17 May 2016 07:59:52 +0200
379
17642172
DM
380pve-firewall (2.0-26) unstable; urgency=medium
381
382 * fix #988: set rp_filter=2
383
384 -- Proxmox Support Team <support@proxmox.com> Mon, 09 May 2016 10:01:28 +0200
385
6e29af12
DM
386pve-firewall (2.0-25) unstable; urgency=medium
387
388 * fix #945: add uninitialized check in lxc ipset compilation
389
390 -- Proxmox Support Team <support@proxmox.com> Thu, 21 Apr 2016 09:58:33 +0200
391
edb4aff5
DM
392pve-firewall (2.0-24) unstable; urgency=medium
393
394 * Build-Depend on pve-doc-generator
395
396 * generate manpage with pve-doc-generator
397
398 -- Proxmox Support Team <support@proxmox.com> Wed, 06 Apr 2016 10:52:45 +0200
399
e1158c15
DM
400pve-firewall (2.0-23) unstable; urgency=medium
401
402 * use only the top bit for our accept marks
403
404 -- Proxmox Support Team <support@proxmox.com> Fri, 01 Apr 2016 07:35:38 +0200
405
5399f912
DM
406pve-firewall (2.0-22) unstable; urgency=medium
407
408 * Use cfs_config_path from PVE::QemuConfig
409
410 -- Proxmox Support Team <support@proxmox.com> Tue, 08 Mar 2016 11:47:40 +0100
411
b9e73915
DM
412pve-firewall (2.0-21) unstable; urgency=medium
413
414 * added new 'ipfilter' option
415
416 -- Proxmox Support Team <support@proxmox.com> Thu, 03 Mar 2016 09:43:39 +0100
417
e2a49003
DM
418pve-firewall (2.0-20) unstable; urgency=medium
419
420 * fix 901: encode unicode characters in sha digest
421
422 -- Proxmox Support Team <support@proxmox.com> Mon, 29 Feb 2016 12:40:14 +0100
423
1d10f89a
DM
424pve-firewall (2.0-19) unstable; urgency=medium
425
426 * Add radv option to VM options
427
428 -- Proxmox Support Team <support@proxmox.com> Sat, 27 Feb 2016 10:24:42 +0100
429
666093cd
DM
430pve-firewall (2.0-18) unstable; urgency=medium
431
432 * Add ndp option to host and VM firewall options
433
434 * Add router-solicitation to NeighborDiscovery macro
435
436 -- Proxmox Support Team <support@proxmox.com> Fri, 19 Feb 2016 10:01:22 +0100
437
eaf25885
DM
438pve-firewall (2.0-17) unstable; urgency=medium
439
440 * Don't leave empty FW config files behind
441
442 -- Proxmox Support Team <support@proxmox.com> Mon, 08 Feb 2016 14:09:24 +0100
443
a177fb07
DM
444pve-firewall (2.0-16) unstable; urgency=medium
445
446 * logger: basic ipv6 support
447
448 * add DHCPv6 macro
449
450 * add dhcpv6 support to the dhcp option
451
452 -- Proxmox Support Team <support@proxmox.com> Tue, 26 Jan 2016 16:52:14 +0100
453
ab1b8d3c
DM
454pve-firewall (2.0-15) unstable; urgency=medium
455
456 * fix bug #859: use $security_group_name_pattern in iptables_get_chains
457
458 * fix some regular expressions mixups
459
460 -- Proxmox Support Team <support@proxmox.com> Thu, 07 Jan 2016 16:33:23 +0100
461
c9c8d7a3
DM
462pve-firewall (2.0-14) unstable; urgency=medium
463
464 * fix systemd service dependencies
465
466 -- Proxmox Support Team <support@proxmox.com> Fri, 27 Nov 2015 10:52:57 +0100
467
aa818ae7
DM
468pve-firewall (2.0-13) unstable; urgency=medium
469
470 * allow numeric icmp types
471
472 -- Proxmox Support Team <support@proxmox.com> Fri, 23 Oct 2015 13:21:53 +0200
473
8dbebe7d
DM
474pve-firewall (2.0-12) unstable; urgency=medium
475
476 * implement bash completions
477
478 * convert pve-firewall into a PVE::Service class
479
480 -- Proxmox Support Team <support@proxmox.com> Thu, 24 Sep 2015 12:15:00 +0200
481
47704f4c
DM
482pve-firewall (2.0-11) unstable; urgency=medium
483
484 * iptables_get_chains: fix veth device name
485
486 -- Proxmox Support Team <support@proxmox.com> Tue, 08 Sep 2015 07:54:35 +0200
487
9eb84dc7
DM
488pve-firewall (2.0-10) unstable; urgency=medium
489
490 * new helper: clone_vmfw_conf()
491
492 -- Proxmox Support Team <support@proxmox.com> Tue, 25 Aug 2015 06:47:49 +0200
493
a3d34dac
DM
494pve-firewall (2.0-9) unstable; urgency=medium
495
496 * remove firewall config file subroutine added
497
498 -- Proxmox Support Team <support@proxmox.com> Wed, 19 Aug 2015 15:42:51 +0200
499
2a42a237
DM
500pve-firewall (2.0-8) unstable; urgency=medium
501
502 * adopt regresion tests for lxc containers
503
504 * removed firewall code for openVZ
505
506 * Subroutine verify_rule fixed to correctly check only for "net\d+"
507 interface device names
508
509 -- Proxmox Support Team <support@proxmox.com> Wed, 12 Aug 2015 12:01:43 +0200
510
33448a6e
DM
511pve-firewall (2.0-7) unstable; urgency=medium
512
513 * added firewall code for lxc
514
515 -- Proxmox Support Team <support@proxmox.com> Mon, 10 Aug 2015 09:21:14 +0200
516
19f14465
DM
517pve-firewall (2.0-6) unstable; urgency=medium
518
519 * firewall ipversion comparison fix
520
521 -- Proxmox Support Team <support@proxmox.com> Tue, 04 Aug 2015 11:14:51 +0200
522
8feec9fa
DM
523pve-firewall (2.0-5) unstable; urgency=medium
524
525 * add ipv6 neighbor discovery and solicitation macros
526
527 * ip6tables accepts both spellings of the word neighbor
528
529 * added Ceph macro
530
531 -- Proxmox Support Team <support@proxmox.com> Mon, 27 Jul 2015 13:20:55 +0200
532
e02c77aa
DM
533pve-firewall (2.0-4) unstable; urgency=medium
534
535 * include manual page for pve-firewall
536
537 -- Proxmox Support Team <support@proxmox.com> Sat, 27 Jun 2015 16:26:28 +0200
538
eb4a2902
DM
539pve-firewall (2.0-3) unstable; urgency=medium
540
541 * use noawait trigers for pve-api-updates
542
543 -- Proxmox Support Team <support@proxmox.com> Mon, 01 Jun 2015 12:33:06 +0200
544
56bb2e69
DM
545pve-firewall (2.0-2) unstable; urgency=medium
546
547 * trigger pve-api-updates event
548
549 -- Proxmox Support Team <support@proxmox.com> Tue, 05 May 2015 15:10:24 +0200
550
0b18ebe8
DM
551pve-firewall (2.0-1) unstable; urgency=medium
552
553 * recompile for debian jessie
554
555 -- Proxmox Support Team <support@proxmox.com> Fri, 27 Feb 2015 12:22:04 +0100
556
609f00c7
DM
557pve-firewall (1.0-18) unstable; urgency=low
558
559 * fix alias lookup
560
561 -- Proxmox Support Team <support@proxmox.com> Mon, 09 Feb 2015 09:32:03 +0100
562
de48e659
DM
563pve-firewall (1.0-17) unstable; urgency=low
564
565 * fix restart behavior
566
567 -- Proxmox Support Team <support@proxmox.com> Thu, 15 Jan 2015 06:45:58 +0100
568
b92d2ed2
DM
569pve-firewall (1.0-16) unstable; urgency=low
570
571 * use new Daemon class from pve-common
572
573 -- Proxmox Support Team <support@proxmox.com> Thu, 18 Dec 2014 09:45:07 +0100
574
22dde8d6
DM
575pve-firewall (1.0-15) unstable; urgency=low
576
577 * bug fix: load cluster conf for host rules
578
579 -- Proxmox Support Team <support@proxmox.com> Fri, 12 Dec 2014 06:33:28 +0100
580
e33e2f16
DM
581pve-firewall (1.0-14) unstable; urgency=low
582
583 * do not use ipset list chains
584
585 * remove preinst script (not needed anymore)
586
587 -- Proxmox Support Team <support@proxmox.com> Fri, 05 Dec 2014 13:42:00 +0100
588
3bce273b
DM
589pve-firewall (1.0-13) unstable; urgency=low
590
591 * fix ipset remove order
592
593 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 12:45:48 +0100
594
7a7c322c
DM
595pve-firewall (1.0-12) unstable; urgency=low
596
597 * add preinst script to clear ipset from older installation (because
598 sets cannot be swapped if there type does not match.
ce41ae23 599
7a7c322c
DM
600 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 08:59:38 +0100
601
1b918ee5
DM
602pve-firewall (1.0-11) unstable; urgency=low
603
604 * bug fix: correctly set ipversion for aliases in verify_rule
605
606 * save restore commands into files to make debugging
607 easier (/var/lib/pve-firewall/)
608
609 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 08:04:05 +0100
610
df617cea
DM
611pve-firewall (1.0-10) unstable; urgency=low
612
613 * add IPv6 support for VMs (hostfw is IPv4 only)
614
615 -- Proxmox Support Team <support@proxmox.com> Wed, 26 Nov 2014 07:00:29 +0100
616
0ac57570
DM
617pve-firewall (1.0-9) unstable; urgency=low
618
619 * fix max ipset name name length
620
621 -- Proxmox Support Team <support@proxmox.com> Tue, 14 Oct 2014 16:29:34 +0200
622
05fd3b63
DM
623pve-firewall (1.0-8) unstable; urgency=low
624
625 * implement permission
626
627 -- Proxmox Support Team <support@proxmox.com> Mon, 08 Sep 2014 12:15:21 +0200
628
bea9d5ab
DM
629pve-firewall (1.0-7) unstable; urgency=low
630
631 * proxy host rule API calls to correct node
a34cfdd0
DM
632
633 * always generate MAC and IP filter rules if firewall is enabled on NIC
bea9d5ab
DM
634
635 -- Proxmox Support Team <support@proxmox.com> Thu, 26 Jun 2014 07:12:57 +0200
636
582275c3
DM
637pve-firewall (1.0-6) unstable; urgency=low
638
639 * ipmlement ipfilter ipsets
640
641 -- Proxmox Support Team <support@proxmox.com> Thu, 12 Jun 2014 08:37:08 +0200
642
de0c1e49
DM
643pve-firewall (1.0-5) unstable; urgency=low
644
645 * remove ipsets when firewall disabled
646
647 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 08:50:18 +0200
648
64c266f5
DM
649pve-firewall (1.0-4) unstable; urgency=low
650
651 * depend on iptables and ipset
652
653 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 06:45:33 +0200
654
16bcfa8b
DM
655pve-firewall (1.0-3) unstable; urgency=low
656
657 * change dh_installinit order (register pvefw-logger before pve-firewall)
658
659 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 06:24:21 +0200
660
ba0b3a0a
DM
661pve-firewall (1.0-2) unstable; urgency=low
662
663 * add experimental nflog logging daemon
664
665 -- Proxmox Support Team <support@proxmox.com> Thu, 13 Mar 2014 08:27:01 +0100
666
bb272dd3
DM
667pve-firewall (1.0-1) unstable; urgency=low
668
669 * initial package
670
671 -- Proxmox Support Team <support@proxmox.com> Mon, 03 Mar 2014 08:37:06 +0100
672