+pve-firewall (4.0-5) pve; urgency=medium
+
+ * don't use any base path at all for calls to external binaries to make use
+ compativle with bot, /usr merged and unmerged setups
+
+ -- Proxmox Support Team <support@proxmox.com> Fri, 12 Jul 2019 11:47:53 +0200
+
+pve-firewall (4.0-4) pve; urgency=medium
+
+ * ebtables: remove PVE chains properly
+
+ * ebtables: treat chain deletion as change
+
+ * use /usr/sbin as base path
+
+ -- Proxmox Support Team <support@proxmox.com> Thu, 11 Jul 2019 19:40:01 +0200
+
+pve-firewall (4.0-3) pve; urgency=medium
+
+ * Create corosync firewall rules independently of localnet~
+
+ * Display corosync rule info on localnet call
+
+ -- Proxmox Support Team <support@proxmox.com> Thu, 04 Jul 2019 15:56:11 +0200
+
+pve-firewall (4.0-2) pve; urgency=medium
+
+ * fix systemd warning about PIDFile directory
+
+ * fix CT rule generation with ipfilter set
+
+ * pve-firewall service: update-alternative iptables and ebtables to working
+ legacy versions
+
+ -- Proxmox Support Team <support@proxmox.com> Mon, 24 Jun 2019 20:43:21 +0200
+
+pve-firewall (4.0-1) pve; urgency=medium
+
+ * re-build for Debian Buster / PVE 6
+
+ -- Proxmox Support Team <support@proxmox.com> Tue, 21 May 2019 22:28:55 +0200
+
+pve-firewall (3.0-21) unstable; urgency=medium
+
+ * fix ipv6 PVEFW-reject
+
+ * fix #2193: arpfilter: CT: remove mask from net IP/CIDR to avoid
+ ebtables doing the wrong thing here
+
+ -- Proxmox Support Team <support@proxmox.com> Wed, 08 May 2019 10:09:31 +0000
+
+pve-firewall (3.0-20) unstable; urgency=medium
+
+ * use IPCC to read config and rule files, if the are backed by pmxcfs which
+ has better handling for pmxcfs restarts
+
+ * fix #2178: endless loop on ipv6 extension headers
+
+ -- Proxmox Support Team <support@proxmox.com> Fri, 19 Apr 2019 05:10:13 +0000
+
+pve-firewall (3.0-19) unstable; urgency=medium
+
+ * ebtables: add arp filtering
+
+ * fix: #2123 Logging of user defined firewall rules
+
+ * fix Razor macro
+
+ * allow to enable/disable and modify cluster wide log ratelimits
+
+ -- Proxmox Support Team <support@proxmox.com> Tue, 02 Apr 2019 11:15:16 +0200
+
+pve-firewall (3.0-18) unstable; urgency=medium
+
+ * fix #1606: Add nf_conntrack_allow_invalid option
+
+ * log reject : add space after policy REJECT like drop
+
+ * fix #1891: Add zsh command completion for pve-firewall
+
+ -- Proxmox Support Team <support@proxmox.com> Mon, 04 Mar 2019 10:27:01 +0100
+
+pve-firewall (3.0-17) unstable; urgency=medium
+
+ * fix #2005: only allow ascii port digits
+
+ * fix #2004: do not allow backwards ranges
+
+ * add conntrack logging via libnetfilter_conntrack and allow one to enable
+ it through the firewall host configuration
+
+ -- Proxmox Support Team <support@proxmox.com> Wed, 09 Jan 2019 16:56:17 +0100
+
pve-firewall (3.0-16) unstable; urgency=medium
* api/rules: fix macro return type