]> git.proxmox.com Git - pve-firewall.git/blame - debian/changelog
Fix #4550 : host options: add nf_conntrack_helpers
[pve-firewall.git] / debian / changelog
CommitLineData
b4577a25
TL
1pve-firewall (4.2-7) bullseye; urgency=medium
2
3 * fix #4018: add firewall macro for SPICE proxy
4
5 * fix #4204: automatically update each usage of a group to the new ID when
6 it is renamed
7
8 * fix #4268: add 'force' parameter to delete IPSet with members
9
10 -- Proxmox Support Team <support@proxmox.com> Thu, 17 Nov 2022 19:53:04 +0100
11
dd559e8a
TL
12pve-firewall (4.2-6) bullseye; urgency=medium
13
14 * config defaults: document that the mac filter defaults to on
15
16 * fix #4175: ignore non-filter ebtables tables
17
18 * fix enabling ebtables if VM firewall config is invalid
19
20 -- Proxmox Support Team <support@proxmox.com> Mon, 29 Aug 2022 09:43:53 +0200
21
fba392f2
TL
22pve-firewall (4.2-5) bullseye; urgency=medium
23
24 * fix #3677 ipset get chains: handle newer ipset output for actual
25 change detection
26
27 -- Proxmox Support Team <support@proxmox.com> Thu, 04 Nov 2021 16:37:13 +0100
28
bd63a439
TL
29pve-firewall (4.2-4) bullseye; urgency=medium
30
31 * re-build to avoid issues stemming from semi-broken systemd-debhelper version
32
33 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Oct 2021 10:39:05 +0200
34
2a2b81b4
TL
35pve-firewall (4.2-3) bullseye; urgency=medium
36
37 * fix #2721: remove the (nowadays) bogus reject for TCP port 43 from the
38 default drop and reject actions
39
40 -- Proxmox Support Team <support@proxmox.com> Fri, 10 Sep 2021 13:00:07 +0200
41
dcdbb559
TL
42pve-firewall (4.2-2) bullseye; urgency=medium
43
44 * re-set relevant sysctls on every apply round
45
46 -- Proxmox Support Team <support@proxmox.com> Mon, 21 Jun 2021 11:31:42 +0200
47
ce9cfab8
TL
48pve-firewall (4.2-1) bullseye; urgency=medium
49
50 * fix #967: source: dest: limit length
51
52 * re-build for Debian 11 Bullseye based releases (Proxmox VE 7)
53
54 * fix #2358: allow --<opt> in firewall rule config files
55
56 -- Proxmox Support Team <support@proxmox.com> Wed, 12 May 2021 20:32:30 +0200
57
8a4e5b69
TL
58pve-firewall (4.1-3) pve; urgency=medium
59
60 * fix #2773: ebtables: keep policy of custom chains
61
62 * introduce new icmp-type parameter
63
64 -- Proxmox Support Team <support@proxmox.com> Fri, 18 Sep 2020 16:51:27 +0200
65
70718917
TL
66pve-firewall (4.1-2) pve; urgency=medium
67
68 * revert: rules: verify referenced security group exists
69
70 -- Proxmox Support Team <support@proxmox.com> Wed, 06 May 2020 17:41:36 +0200
71
c5530455
TL
72pve-firewall (4.1-1) pve; urgency=medium
73
74 * logging: add missing log message for inbound rules
75
76 * fix #2686: avoid adding 'arp-ip-src' IP filter if guests uses DHCP
77
78 * IPSets: parse the CIDR before checking for duplicates
79
80 * verify that a referenced security group exists
81
82 * ICMP: fix iptables-restore failing if ICMP-type values bigger than '255'
83
84 * ICMP: allow one to specify the 'echo-reply' (0) type also as integer
85
86 * improve handling concurrent (parallel) access and modifications to rules
87
88 -- Proxmox Support Team <support@proxmox.com> Mon, 04 May 2020 15:01:57 +0200
89
56a47140
TL
90pve-firewall (4.0-10) pve; urgency=medium
91
92 * macros: add macro for Proxmox Mail Gateway web interface
93
94 * api node: always pass cluster conf to node FW parser to fix false positive
95 error message about non existing aliases, or IP sets, when querying the
96 node FW options GET API call.
97
98 * grammar fix: s/does not exists/does not exist/g
99
100 -- Proxmox Support Team <support@proxmox.com> Mon, 27 Jan 2020 19:25:49 +0100
101
5162c268
TL
102pve-firewall (4.0-9) pve; urgency=medium
103
104 * ensure port range used for offline storage migration and insecure migration
105 traffic is allowed by default rule set.
106
107 -- Proxmox Support Team <support@proxmox.com> Tue, 03 Dec 2019 08:12:20 +0100
108
5ac03b1c
WB
109pve-firewall (4.0-8) pve; urgency=medium
110
111 * increase default nf_conntrack_max to the kernel's default
112
113 * fix some "use of uninitialized value" warnings when updating CIDRs
114
115 * update schema documentation
116
117 * add explicit dependency on libpve-cluster-perl
118
119 * add support for "raw" tables
120
121 * add options for synflood protection for host firewall:
122 - nf_conntrack_tcp_timeout_syn_recv
123 - protection_synflood: boolean
124 - protection_synflood_rate: SYN rate limit (default 200 per second)
125 - protection_synflood_burst: SYN burst limit (default 1000)
126
127 -- Proxmox Support Team <support@proxmox.com> Mon, 18 Nov 2019 13:48:20 +0100
128
bd368955
FG
129pve-firewall (4.0-7) pve; urgency=medium
130
131 * only add VM chains and rules if VM firewall is enabled
132
133 -- Proxmox Support Team <support@proxmox.com> Wed, 7 Aug 2019 10:55:06 +0200
134
c8f3e1ee
TL
135pve-firewall (4.0-6) pve; urgency=medium
136
137 * firewall macros: add new Ceph protocol v2 port while keeping v1 port
138
139 -- Proxmox Support Team <support@proxmox.com> Tue, 23 Jul 2019 18:57:48 +0200
140
6fc572dc
TL
141pve-firewall (4.0-5) pve; urgency=medium
142
143 * don't use any base path at all for calls to external binaries to make use
144 compativle with bot, /usr merged and unmerged setups
145
146 -- Proxmox Support Team <support@proxmox.com> Fri, 12 Jul 2019 11:47:53 +0200
147
b1379400
TL
148pve-firewall (4.0-4) pve; urgency=medium
149
150 * ebtables: remove PVE chains properly
151
152 * ebtables: treat chain deletion as change
153
154 * use /usr/sbin as base path
155
156 -- Proxmox Support Team <support@proxmox.com> Thu, 11 Jul 2019 19:40:01 +0200
157
9e01d77d
TL
158pve-firewall (4.0-3) pve; urgency=medium
159
160 * Create corosync firewall rules independently of localnet~
161
162 * Display corosync rule info on localnet call
163
164 -- Proxmox Support Team <support@proxmox.com> Thu, 04 Jul 2019 15:56:11 +0200
165
9429bd35
TL
166pve-firewall (4.0-2) pve; urgency=medium
167
168 * fix systemd warning about PIDFile directory
169
170 * fix CT rule generation with ipfilter set
171
172 * pve-firewall service: update-alternative iptables and ebtables to working
173 legacy versions
174
175 -- Proxmox Support Team <support@proxmox.com> Mon, 24 Jun 2019 20:43:21 +0200
176
6b9da9b0
TL
177pve-firewall (4.0-1) pve; urgency=medium
178
179 * re-build for Debian Buster / PVE 6
180
181 -- Proxmox Support Team <support@proxmox.com> Tue, 21 May 2019 22:28:55 +0200
182
dd7d737b
TL
183pve-firewall (3.0-21) unstable; urgency=medium
184
185 * fix ipv6 PVEFW-reject
186
187 * fix #2193: arpfilter: CT: remove mask from net IP/CIDR to avoid
188 ebtables doing the wrong thing here
189
190 -- Proxmox Support Team <support@proxmox.com> Wed, 08 May 2019 10:09:31 +0000
191
bbf77725
TL
192pve-firewall (3.0-20) unstable; urgency=medium
193
194 * use IPCC to read config and rule files, if the are backed by pmxcfs which
195 has better handling for pmxcfs restarts
196
197 * fix #2178: endless loop on ipv6 extension headers
198
199 -- Proxmox Support Team <support@proxmox.com> Fri, 19 Apr 2019 05:10:13 +0000
200
baba607a
TL
201pve-firewall (3.0-19) unstable; urgency=medium
202
203 * ebtables: add arp filtering
204
205 * fix: #2123 Logging of user defined firewall rules
206
207 * fix Razor macro
208
209 * allow to enable/disable and modify cluster wide log ratelimits
210
211 -- Proxmox Support Team <support@proxmox.com> Tue, 02 Apr 2019 11:15:16 +0200
212
d8ea08e3
TL
213pve-firewall (3.0-18) unstable; urgency=medium
214
215 * fix #1606: Add nf_conntrack_allow_invalid option
216
217 * log reject : add space after policy REJECT like drop
218
219 * fix #1891: Add zsh command completion for pve-firewall
220
221 -- Proxmox Support Team <support@proxmox.com> Mon, 04 Mar 2019 10:27:01 +0100
222
91d88bc5
TL
223pve-firewall (3.0-17) unstable; urgency=medium
224
225 * fix #2005: only allow ascii port digits
226
227 * fix #2004: do not allow backwards ranges
228
229 * add conntrack logging via libnetfilter_conntrack and allow one to enable
230 it through the firewall host configuration
231
232 -- Proxmox Support Team <support@proxmox.com> Wed, 09 Jan 2019 16:56:17 +0100
233
81d13a9d
TL
234pve-firewall (3.0-16) unstable; urgency=medium
235
236 * api/rules: fix macro return type
237
238 -- Proxmox Support Team <support@proxmox.com> Fri, 30 Nov 2018 16:02:59 +0100
239
bed701bc
TL
240pve-firewall (3.0-15) unstable; urgency=medium
241
242 * fix #1971: display firewall rule properties
243
244 -- Proxmox Support Team <support@proxmox.com> Fri, 23 Nov 2018 14:01:33 +0100
245
a24b157b
WB
246pve-firewall (3.0-14) unstable; urgency=medium
247
248 * fix #1841: avoid ebtable reloads when containers have multiple network
249 interfaces
250
251 -- Proxmox Support Team <support@proxmox.com> Fri, 24 Aug 2018 10:51:04 +0200
252
cf7dd94b
WB
253pve-firewall (3.0-13) unstable; urgency=medium
254
255 * avoid unnecessary reloads of ebtable ruleset
256
257 -- Proxmox Support Team <support@proxmox.com> Thu, 28 Jun 2018 14:47:16 +0200
258
dd03bf6e
WB
259pve-firewall (3.0-12) unstable; urgency=medium
260
261 * fix deleted iptables chains not being properly detected as a change
262
263 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Jun 2018 12:01:02 +0200
264
587a0f20 265pve-firewall (3.0-11) unstable; urgency=medium
a3a51dad
TL
266
267 * #1764: rename 'ebtales_enable' option to 'ebtables'
268
587a0f20 269 -- Proxmox Support Team <support@proxmox.com> Wed, 06 Jun 2018 16:18:13 +0200
a3a51dad 270
423b86ef
WB
271pve-firewall (3.0-10) unstable; urgency=medium
272
273 * fix #1764: handle existing ebtables rules and allow disabling ebtables
274
275 * ebtables handling can be disabled via /etc/pve/firewall/cluster.fw's new
276 ebtables_enable option.
277
278 -- Proxmox Support Team <support@proxmox.com> Tue, 29 May 2018 15:14:33 +0200
279
567e58ce
WB
280pve-firewall (3.0-9) unstable; urgency=medium
281
282 * fix creation of ebltables FORWARD rule entry
283
284 -- Proxmox Support Team <support@proxmox.com> Thu, 17 May 2018 14:41:27 +0200
285
ea0d59ed
WB
286pve-firewall (3.0-8) unstable; urgency=medium
287
288 * add ebtables support for better MAC filtering
289
290 -- Proxmox Support Team <support@proxmox.com> Wed, 11 Apr 2018 14:25:41 +0200
291
9a19ec81
WB
292pve-firewall (3.0-7) unstable; urgency=medium
293
294 * support distinct source and destination multi-port matching
295
296 * multi-port matching: when specifying the same list of ports for source and
297 destination require them both to match, rather than one of them, as this
298 was rather unexpected behavior
299
300 -- Proxmox Support Team <support@proxmox.com> Mon, 12 Mar 2018 14:58:08 +0100
301
8c41d444
DM
302pve-firewall (3.0-6) unstable; urgency=medium
303
304 * fix #1319: don't fail postinst with masked service
305
306 * debian: switch to compat 9, drop init scripts, drop preinst
307
308 * check multiport limit in port ranges
309
310 * build: use git rev-parse for GITVERSION
311
312 -- Proxmox Support Team <support@proxmox.com> Thu, 08 Mar 2018 13:53:11 +0100
313
4299c35f
WB
314pve-firewall (3.0-5) unstable; urgency=medium
315
316 * fix issue with disabled flag not being honored within groups
317
318 -- Proxmox Support Team <support@proxmox.com> Thu, 07 Dec 2017 08:31:42 +0100
319
a19d4127
WB
320pve-firewall (3.0-4) unstable; urgency=medium
321
322 * fix issues with ipsets reloading unnecessarily or too late
323
324 * fix some typos in the logs
325
326 -- Proxmox Support Team <support@proxmox.com> Thu, 16 Nov 2017 11:41:56 +0100
327
c0c71b1b
WB
328pve-firewall (3.0-3) unstable; urgency=medium
329
330 * Fix #1492: logger: use current timestamp if the packet doesn't have one
331
332 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Sep 2017 14:43:06 +0200
333
4f7a4bdd
WB
334pve-firewall (3.0-2) unstable; urgency=medium
335
336 * Fix #1446: remove masks in case the package had previously been removed but
337 not purged.
338
339 * improve logging on errors in the firewall configuration
340
341 * forbid trailing commas in lists as iptables-restore doesn't support them
342
343 -- Proxmox Support Team <support@proxmox.com> Mon, 17 Jul 2017 15:24:40 +0200
344
29a94c79
FG
345pve-firewall (3.0-1) unstable; urgency=medium
346
347 * rebuild for Debian Stretch
348
349 -- Proxmox Support Team <support@proxmox.com> Thu, 9 Mar 2017 14:04:17 +0100
350
df67a3dc
DM
351pve-firewall (2.0-33) unstable; urgency=medium
352
353 * ipset: don't allow zero-prefix entries
354
355 -- Proxmox Support Team <support@proxmox.com> Tue, 29 Nov 2016 12:18:04 +0100
356
dc643b4d
DM
357pve-firewall (2.0-32) unstable; urgency=medium
358
359 * improve search for local-network
360
361 -- Proxmox Support Team <support@proxmox.com> Tue, 29 Nov 2016 06:35:08 +0100
362
45f206fd
DM
363pve-firewall (2.0-31) unstable; urgency=medium
364
365 * don't try to apply ports to rules which don't support them
366
367 -- Proxmox Support Team <support@proxmox.com> Thu, 06 Oct 2016 08:31:51 +0200
368
2ea28d0c
DM
369pve-firewall (2.0-30) unstable; urgency=medium
370
371 * add multicast DNS to the list of Macros
372
373 * add missing parameter descriptions
374
375 * build-depends: add dh-systemd
376
377 -- Proxmox Support Team <support@proxmox.com> Fri, 16 Sep 2016 08:53:16 +0200
378
b65d13d9
DM
379pve-firewall (2.0-29) unstable; urgency=medium
380
381 * prevent overwriting ipsets/sec. groups by renaming
382
383 -- Proxmox Support Team <support@proxmox.com> Fri, 03 Jun 2016 16:46:10 +0200
384
d0f3bb08
DM
385pve-firewall (2.0-28) unstable; urgency=medium
386
387 * use pve-common's ipv4_mask_hash_localnet
388
5c53cde4
DC
389 * fix allowed group name length
390
391 * make group digest stable
392
d0f3bb08
DM
393 -- Proxmox Support Team <support@proxmox.com> Fri, 03 Jun 2016 11:01:47 +0200
394
76a57e1a
DM
395pve-firewall (2.0-27) unstable; urgency=medium
396
397 * fix #972: make PVEFW-FWBR-* rule order stable
398
399 -- Proxmox Support Team <support@proxmox.com> Tue, 17 May 2016 07:59:52 +0200
400
17642172
DM
401pve-firewall (2.0-26) unstable; urgency=medium
402
403 * fix #988: set rp_filter=2
404
405 -- Proxmox Support Team <support@proxmox.com> Mon, 09 May 2016 10:01:28 +0200
406
6e29af12
DM
407pve-firewall (2.0-25) unstable; urgency=medium
408
409 * fix #945: add uninitialized check in lxc ipset compilation
410
411 -- Proxmox Support Team <support@proxmox.com> Thu, 21 Apr 2016 09:58:33 +0200
412
edb4aff5
DM
413pve-firewall (2.0-24) unstable; urgency=medium
414
415 * Build-Depend on pve-doc-generator
416
417 * generate manpage with pve-doc-generator
418
419 -- Proxmox Support Team <support@proxmox.com> Wed, 06 Apr 2016 10:52:45 +0200
420
e1158c15
DM
421pve-firewall (2.0-23) unstable; urgency=medium
422
423 * use only the top bit for our accept marks
424
425 -- Proxmox Support Team <support@proxmox.com> Fri, 01 Apr 2016 07:35:38 +0200
426
5399f912
DM
427pve-firewall (2.0-22) unstable; urgency=medium
428
429 * Use cfs_config_path from PVE::QemuConfig
430
431 -- Proxmox Support Team <support@proxmox.com> Tue, 08 Mar 2016 11:47:40 +0100
432
b9e73915
DM
433pve-firewall (2.0-21) unstable; urgency=medium
434
435 * added new 'ipfilter' option
436
437 -- Proxmox Support Team <support@proxmox.com> Thu, 03 Mar 2016 09:43:39 +0100
438
e2a49003
DM
439pve-firewall (2.0-20) unstable; urgency=medium
440
441 * fix 901: encode unicode characters in sha digest
442
443 -- Proxmox Support Team <support@proxmox.com> Mon, 29 Feb 2016 12:40:14 +0100
444
1d10f89a
DM
445pve-firewall (2.0-19) unstable; urgency=medium
446
447 * Add radv option to VM options
448
449 -- Proxmox Support Team <support@proxmox.com> Sat, 27 Feb 2016 10:24:42 +0100
450
666093cd
DM
451pve-firewall (2.0-18) unstable; urgency=medium
452
453 * Add ndp option to host and VM firewall options
454
455 * Add router-solicitation to NeighborDiscovery macro
456
457 -- Proxmox Support Team <support@proxmox.com> Fri, 19 Feb 2016 10:01:22 +0100
458
eaf25885
DM
459pve-firewall (2.0-17) unstable; urgency=medium
460
461 * Don't leave empty FW config files behind
462
463 -- Proxmox Support Team <support@proxmox.com> Mon, 08 Feb 2016 14:09:24 +0100
464
a177fb07
DM
465pve-firewall (2.0-16) unstable; urgency=medium
466
467 * logger: basic ipv6 support
468
469 * add DHCPv6 macro
470
471 * add dhcpv6 support to the dhcp option
472
473 -- Proxmox Support Team <support@proxmox.com> Tue, 26 Jan 2016 16:52:14 +0100
474
ab1b8d3c
DM
475pve-firewall (2.0-15) unstable; urgency=medium
476
477 * fix bug #859: use $security_group_name_pattern in iptables_get_chains
478
479 * fix some regular expressions mixups
480
481 -- Proxmox Support Team <support@proxmox.com> Thu, 07 Jan 2016 16:33:23 +0100
482
c9c8d7a3
DM
483pve-firewall (2.0-14) unstable; urgency=medium
484
485 * fix systemd service dependencies
486
487 -- Proxmox Support Team <support@proxmox.com> Fri, 27 Nov 2015 10:52:57 +0100
488
aa818ae7
DM
489pve-firewall (2.0-13) unstable; urgency=medium
490
491 * allow numeric icmp types
492
493 -- Proxmox Support Team <support@proxmox.com> Fri, 23 Oct 2015 13:21:53 +0200
494
8dbebe7d
DM
495pve-firewall (2.0-12) unstable; urgency=medium
496
497 * implement bash completions
498
499 * convert pve-firewall into a PVE::Service class
500
501 -- Proxmox Support Team <support@proxmox.com> Thu, 24 Sep 2015 12:15:00 +0200
502
47704f4c
DM
503pve-firewall (2.0-11) unstable; urgency=medium
504
505 * iptables_get_chains: fix veth device name
506
507 -- Proxmox Support Team <support@proxmox.com> Tue, 08 Sep 2015 07:54:35 +0200
508
9eb84dc7
DM
509pve-firewall (2.0-10) unstable; urgency=medium
510
511 * new helper: clone_vmfw_conf()
512
513 -- Proxmox Support Team <support@proxmox.com> Tue, 25 Aug 2015 06:47:49 +0200
514
a3d34dac
DM
515pve-firewall (2.0-9) unstable; urgency=medium
516
517 * remove firewall config file subroutine added
518
519 -- Proxmox Support Team <support@proxmox.com> Wed, 19 Aug 2015 15:42:51 +0200
520
2a42a237
DM
521pve-firewall (2.0-8) unstable; urgency=medium
522
523 * adopt regresion tests for lxc containers
524
525 * removed firewall code for openVZ
526
527 * Subroutine verify_rule fixed to correctly check only for "net\d+"
528 interface device names
529
530 -- Proxmox Support Team <support@proxmox.com> Wed, 12 Aug 2015 12:01:43 +0200
531
33448a6e
DM
532pve-firewall (2.0-7) unstable; urgency=medium
533
534 * added firewall code for lxc
535
536 -- Proxmox Support Team <support@proxmox.com> Mon, 10 Aug 2015 09:21:14 +0200
537
19f14465
DM
538pve-firewall (2.0-6) unstable; urgency=medium
539
540 * firewall ipversion comparison fix
541
542 -- Proxmox Support Team <support@proxmox.com> Tue, 04 Aug 2015 11:14:51 +0200
543
8feec9fa
DM
544pve-firewall (2.0-5) unstable; urgency=medium
545
546 * add ipv6 neighbor discovery and solicitation macros
547
548 * ip6tables accepts both spellings of the word neighbor
549
550 * added Ceph macro
551
552 -- Proxmox Support Team <support@proxmox.com> Mon, 27 Jul 2015 13:20:55 +0200
553
e02c77aa
DM
554pve-firewall (2.0-4) unstable; urgency=medium
555
556 * include manual page for pve-firewall
557
558 -- Proxmox Support Team <support@proxmox.com> Sat, 27 Jun 2015 16:26:28 +0200
559
eb4a2902
DM
560pve-firewall (2.0-3) unstable; urgency=medium
561
562 * use noawait trigers for pve-api-updates
563
564 -- Proxmox Support Team <support@proxmox.com> Mon, 01 Jun 2015 12:33:06 +0200
565
56bb2e69
DM
566pve-firewall (2.0-2) unstable; urgency=medium
567
568 * trigger pve-api-updates event
569
570 -- Proxmox Support Team <support@proxmox.com> Tue, 05 May 2015 15:10:24 +0200
571
0b18ebe8
DM
572pve-firewall (2.0-1) unstable; urgency=medium
573
574 * recompile for debian jessie
575
576 -- Proxmox Support Team <support@proxmox.com> Fri, 27 Feb 2015 12:22:04 +0100
577
609f00c7
DM
578pve-firewall (1.0-18) unstable; urgency=low
579
580 * fix alias lookup
581
582 -- Proxmox Support Team <support@proxmox.com> Mon, 09 Feb 2015 09:32:03 +0100
583
de48e659
DM
584pve-firewall (1.0-17) unstable; urgency=low
585
586 * fix restart behavior
587
588 -- Proxmox Support Team <support@proxmox.com> Thu, 15 Jan 2015 06:45:58 +0100
589
b92d2ed2
DM
590pve-firewall (1.0-16) unstable; urgency=low
591
592 * use new Daemon class from pve-common
593
594 -- Proxmox Support Team <support@proxmox.com> Thu, 18 Dec 2014 09:45:07 +0100
595
22dde8d6
DM
596pve-firewall (1.0-15) unstable; urgency=low
597
598 * bug fix: load cluster conf for host rules
599
600 -- Proxmox Support Team <support@proxmox.com> Fri, 12 Dec 2014 06:33:28 +0100
601
e33e2f16
DM
602pve-firewall (1.0-14) unstable; urgency=low
603
604 * do not use ipset list chains
605
606 * remove preinst script (not needed anymore)
607
608 -- Proxmox Support Team <support@proxmox.com> Fri, 05 Dec 2014 13:42:00 +0100
609
3bce273b
DM
610pve-firewall (1.0-13) unstable; urgency=low
611
612 * fix ipset remove order
613
614 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 12:45:48 +0100
615
7a7c322c
DM
616pve-firewall (1.0-12) unstable; urgency=low
617
618 * add preinst script to clear ipset from older installation (because
619 sets cannot be swapped if there type does not match.
ce41ae23 620
7a7c322c
DM
621 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 08:59:38 +0100
622
1b918ee5
DM
623pve-firewall (1.0-11) unstable; urgency=low
624
625 * bug fix: correctly set ipversion for aliases in verify_rule
626
627 * save restore commands into files to make debugging
628 easier (/var/lib/pve-firewall/)
629
630 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 08:04:05 +0100
631
df617cea
DM
632pve-firewall (1.0-10) unstable; urgency=low
633
634 * add IPv6 support for VMs (hostfw is IPv4 only)
635
636 -- Proxmox Support Team <support@proxmox.com> Wed, 26 Nov 2014 07:00:29 +0100
637
0ac57570
DM
638pve-firewall (1.0-9) unstable; urgency=low
639
640 * fix max ipset name name length
641
642 -- Proxmox Support Team <support@proxmox.com> Tue, 14 Oct 2014 16:29:34 +0200
643
05fd3b63
DM
644pve-firewall (1.0-8) unstable; urgency=low
645
646 * implement permission
647
648 -- Proxmox Support Team <support@proxmox.com> Mon, 08 Sep 2014 12:15:21 +0200
649
bea9d5ab
DM
650pve-firewall (1.0-7) unstable; urgency=low
651
652 * proxy host rule API calls to correct node
a34cfdd0
DM
653
654 * always generate MAC and IP filter rules if firewall is enabled on NIC
bea9d5ab
DM
655
656 -- Proxmox Support Team <support@proxmox.com> Thu, 26 Jun 2014 07:12:57 +0200
657
582275c3
DM
658pve-firewall (1.0-6) unstable; urgency=low
659
660 * ipmlement ipfilter ipsets
661
662 -- Proxmox Support Team <support@proxmox.com> Thu, 12 Jun 2014 08:37:08 +0200
663
de0c1e49
DM
664pve-firewall (1.0-5) unstable; urgency=low
665
666 * remove ipsets when firewall disabled
667
668 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 08:50:18 +0200
669
64c266f5
DM
670pve-firewall (1.0-4) unstable; urgency=low
671
672 * depend on iptables and ipset
673
674 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 06:45:33 +0200
675
16bcfa8b
DM
676pve-firewall (1.0-3) unstable; urgency=low
677
678 * change dh_installinit order (register pvefw-logger before pve-firewall)
679
680 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 06:24:21 +0200
681
ba0b3a0a
DM
682pve-firewall (1.0-2) unstable; urgency=low
683
684 * add experimental nflog logging daemon
685
686 -- Proxmox Support Team <support@proxmox.com> Thu, 13 Mar 2014 08:27:01 +0100
687
bb272dd3
DM
688pve-firewall (1.0-1) unstable; urgency=low
689
690 * initial package
691
692 -- Proxmox Support Team <support@proxmox.com> Mon, 03 Mar 2014 08:37:06 +0100
693