]> git.proxmox.com Git - pve-firewall.git/blame - debian/changelog
bump version to 4.2-4
[pve-firewall.git] / debian / changelog
CommitLineData
bd63a439
TL
1pve-firewall (4.2-4) bullseye; urgency=medium
2
3 * re-build to avoid issues stemming from semi-broken systemd-debhelper version
4
5 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Oct 2021 10:39:05 +0200
6
2a2b81b4
TL
7pve-firewall (4.2-3) bullseye; urgency=medium
8
9 * fix #2721: remove the (nowadays) bogus reject for TCP port 43 from the
10 default drop and reject actions
11
12 -- Proxmox Support Team <support@proxmox.com> Fri, 10 Sep 2021 13:00:07 +0200
13
dcdbb559
TL
14pve-firewall (4.2-2) bullseye; urgency=medium
15
16 * re-set relevant sysctls on every apply round
17
18 -- Proxmox Support Team <support@proxmox.com> Mon, 21 Jun 2021 11:31:42 +0200
19
ce9cfab8
TL
20pve-firewall (4.2-1) bullseye; urgency=medium
21
22 * fix #967: source: dest: limit length
23
24 * re-build for Debian 11 Bullseye based releases (Proxmox VE 7)
25
26 * fix #2358: allow --<opt> in firewall rule config files
27
28 -- Proxmox Support Team <support@proxmox.com> Wed, 12 May 2021 20:32:30 +0200
29
8a4e5b69
TL
30pve-firewall (4.1-3) pve; urgency=medium
31
32 * fix #2773: ebtables: keep policy of custom chains
33
34 * introduce new icmp-type parameter
35
36 -- Proxmox Support Team <support@proxmox.com> Fri, 18 Sep 2020 16:51:27 +0200
37
70718917
TL
38pve-firewall (4.1-2) pve; urgency=medium
39
40 * revert: rules: verify referenced security group exists
41
42 -- Proxmox Support Team <support@proxmox.com> Wed, 06 May 2020 17:41:36 +0200
43
c5530455
TL
44pve-firewall (4.1-1) pve; urgency=medium
45
46 * logging: add missing log message for inbound rules
47
48 * fix #2686: avoid adding 'arp-ip-src' IP filter if guests uses DHCP
49
50 * IPSets: parse the CIDR before checking for duplicates
51
52 * verify that a referenced security group exists
53
54 * ICMP: fix iptables-restore failing if ICMP-type values bigger than '255'
55
56 * ICMP: allow one to specify the 'echo-reply' (0) type also as integer
57
58 * improve handling concurrent (parallel) access and modifications to rules
59
60 -- Proxmox Support Team <support@proxmox.com> Mon, 04 May 2020 15:01:57 +0200
61
56a47140
TL
62pve-firewall (4.0-10) pve; urgency=medium
63
64 * macros: add macro for Proxmox Mail Gateway web interface
65
66 * api node: always pass cluster conf to node FW parser to fix false positive
67 error message about non existing aliases, or IP sets, when querying the
68 node FW options GET API call.
69
70 * grammar fix: s/does not exists/does not exist/g
71
72 -- Proxmox Support Team <support@proxmox.com> Mon, 27 Jan 2020 19:25:49 +0100
73
5162c268
TL
74pve-firewall (4.0-9) pve; urgency=medium
75
76 * ensure port range used for offline storage migration and insecure migration
77 traffic is allowed by default rule set.
78
79 -- Proxmox Support Team <support@proxmox.com> Tue, 03 Dec 2019 08:12:20 +0100
80
5ac03b1c
WB
81pve-firewall (4.0-8) pve; urgency=medium
82
83 * increase default nf_conntrack_max to the kernel's default
84
85 * fix some "use of uninitialized value" warnings when updating CIDRs
86
87 * update schema documentation
88
89 * add explicit dependency on libpve-cluster-perl
90
91 * add support for "raw" tables
92
93 * add options for synflood protection for host firewall:
94 - nf_conntrack_tcp_timeout_syn_recv
95 - protection_synflood: boolean
96 - protection_synflood_rate: SYN rate limit (default 200 per second)
97 - protection_synflood_burst: SYN burst limit (default 1000)
98
99 -- Proxmox Support Team <support@proxmox.com> Mon, 18 Nov 2019 13:48:20 +0100
100
bd368955
FG
101pve-firewall (4.0-7) pve; urgency=medium
102
103 * only add VM chains and rules if VM firewall is enabled
104
105 -- Proxmox Support Team <support@proxmox.com> Wed, 7 Aug 2019 10:55:06 +0200
106
c8f3e1ee
TL
107pve-firewall (4.0-6) pve; urgency=medium
108
109 * firewall macros: add new Ceph protocol v2 port while keeping v1 port
110
111 -- Proxmox Support Team <support@proxmox.com> Tue, 23 Jul 2019 18:57:48 +0200
112
6fc572dc
TL
113pve-firewall (4.0-5) pve; urgency=medium
114
115 * don't use any base path at all for calls to external binaries to make use
116 compativle with bot, /usr merged and unmerged setups
117
118 -- Proxmox Support Team <support@proxmox.com> Fri, 12 Jul 2019 11:47:53 +0200
119
b1379400
TL
120pve-firewall (4.0-4) pve; urgency=medium
121
122 * ebtables: remove PVE chains properly
123
124 * ebtables: treat chain deletion as change
125
126 * use /usr/sbin as base path
127
128 -- Proxmox Support Team <support@proxmox.com> Thu, 11 Jul 2019 19:40:01 +0200
129
9e01d77d
TL
130pve-firewall (4.0-3) pve; urgency=medium
131
132 * Create corosync firewall rules independently of localnet~
133
134 * Display corosync rule info on localnet call
135
136 -- Proxmox Support Team <support@proxmox.com> Thu, 04 Jul 2019 15:56:11 +0200
137
9429bd35
TL
138pve-firewall (4.0-2) pve; urgency=medium
139
140 * fix systemd warning about PIDFile directory
141
142 * fix CT rule generation with ipfilter set
143
144 * pve-firewall service: update-alternative iptables and ebtables to working
145 legacy versions
146
147 -- Proxmox Support Team <support@proxmox.com> Mon, 24 Jun 2019 20:43:21 +0200
148
6b9da9b0
TL
149pve-firewall (4.0-1) pve; urgency=medium
150
151 * re-build for Debian Buster / PVE 6
152
153 -- Proxmox Support Team <support@proxmox.com> Tue, 21 May 2019 22:28:55 +0200
154
dd7d737b
TL
155pve-firewall (3.0-21) unstable; urgency=medium
156
157 * fix ipv6 PVEFW-reject
158
159 * fix #2193: arpfilter: CT: remove mask from net IP/CIDR to avoid
160 ebtables doing the wrong thing here
161
162 -- Proxmox Support Team <support@proxmox.com> Wed, 08 May 2019 10:09:31 +0000
163
bbf77725
TL
164pve-firewall (3.0-20) unstable; urgency=medium
165
166 * use IPCC to read config and rule files, if the are backed by pmxcfs which
167 has better handling for pmxcfs restarts
168
169 * fix #2178: endless loop on ipv6 extension headers
170
171 -- Proxmox Support Team <support@proxmox.com> Fri, 19 Apr 2019 05:10:13 +0000
172
baba607a
TL
173pve-firewall (3.0-19) unstable; urgency=medium
174
175 * ebtables: add arp filtering
176
177 * fix: #2123 Logging of user defined firewall rules
178
179 * fix Razor macro
180
181 * allow to enable/disable and modify cluster wide log ratelimits
182
183 -- Proxmox Support Team <support@proxmox.com> Tue, 02 Apr 2019 11:15:16 +0200
184
d8ea08e3
TL
185pve-firewall (3.0-18) unstable; urgency=medium
186
187 * fix #1606: Add nf_conntrack_allow_invalid option
188
189 * log reject : add space after policy REJECT like drop
190
191 * fix #1891: Add zsh command completion for pve-firewall
192
193 -- Proxmox Support Team <support@proxmox.com> Mon, 04 Mar 2019 10:27:01 +0100
194
91d88bc5
TL
195pve-firewall (3.0-17) unstable; urgency=medium
196
197 * fix #2005: only allow ascii port digits
198
199 * fix #2004: do not allow backwards ranges
200
201 * add conntrack logging via libnetfilter_conntrack and allow one to enable
202 it through the firewall host configuration
203
204 -- Proxmox Support Team <support@proxmox.com> Wed, 09 Jan 2019 16:56:17 +0100
205
81d13a9d
TL
206pve-firewall (3.0-16) unstable; urgency=medium
207
208 * api/rules: fix macro return type
209
210 -- Proxmox Support Team <support@proxmox.com> Fri, 30 Nov 2018 16:02:59 +0100
211
bed701bc
TL
212pve-firewall (3.0-15) unstable; urgency=medium
213
214 * fix #1971: display firewall rule properties
215
216 -- Proxmox Support Team <support@proxmox.com> Fri, 23 Nov 2018 14:01:33 +0100
217
a24b157b
WB
218pve-firewall (3.0-14) unstable; urgency=medium
219
220 * fix #1841: avoid ebtable reloads when containers have multiple network
221 interfaces
222
223 -- Proxmox Support Team <support@proxmox.com> Fri, 24 Aug 2018 10:51:04 +0200
224
cf7dd94b
WB
225pve-firewall (3.0-13) unstable; urgency=medium
226
227 * avoid unnecessary reloads of ebtable ruleset
228
229 -- Proxmox Support Team <support@proxmox.com> Thu, 28 Jun 2018 14:47:16 +0200
230
dd03bf6e
WB
231pve-firewall (3.0-12) unstable; urgency=medium
232
233 * fix deleted iptables chains not being properly detected as a change
234
235 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Jun 2018 12:01:02 +0200
236
587a0f20 237pve-firewall (3.0-11) unstable; urgency=medium
a3a51dad
TL
238
239 * #1764: rename 'ebtales_enable' option to 'ebtables'
240
587a0f20 241 -- Proxmox Support Team <support@proxmox.com> Wed, 06 Jun 2018 16:18:13 +0200
a3a51dad 242
423b86ef
WB
243pve-firewall (3.0-10) unstable; urgency=medium
244
245 * fix #1764: handle existing ebtables rules and allow disabling ebtables
246
247 * ebtables handling can be disabled via /etc/pve/firewall/cluster.fw's new
248 ebtables_enable option.
249
250 -- Proxmox Support Team <support@proxmox.com> Tue, 29 May 2018 15:14:33 +0200
251
567e58ce
WB
252pve-firewall (3.0-9) unstable; urgency=medium
253
254 * fix creation of ebltables FORWARD rule entry
255
256 -- Proxmox Support Team <support@proxmox.com> Thu, 17 May 2018 14:41:27 +0200
257
ea0d59ed
WB
258pve-firewall (3.0-8) unstable; urgency=medium
259
260 * add ebtables support for better MAC filtering
261
262 -- Proxmox Support Team <support@proxmox.com> Wed, 11 Apr 2018 14:25:41 +0200
263
9a19ec81
WB
264pve-firewall (3.0-7) unstable; urgency=medium
265
266 * support distinct source and destination multi-port matching
267
268 * multi-port matching: when specifying the same list of ports for source and
269 destination require them both to match, rather than one of them, as this
270 was rather unexpected behavior
271
272 -- Proxmox Support Team <support@proxmox.com> Mon, 12 Mar 2018 14:58:08 +0100
273
8c41d444
DM
274pve-firewall (3.0-6) unstable; urgency=medium
275
276 * fix #1319: don't fail postinst with masked service
277
278 * debian: switch to compat 9, drop init scripts, drop preinst
279
280 * check multiport limit in port ranges
281
282 * build: use git rev-parse for GITVERSION
283
284 -- Proxmox Support Team <support@proxmox.com> Thu, 08 Mar 2018 13:53:11 +0100
285
4299c35f
WB
286pve-firewall (3.0-5) unstable; urgency=medium
287
288 * fix issue with disabled flag not being honored within groups
289
290 -- Proxmox Support Team <support@proxmox.com> Thu, 07 Dec 2017 08:31:42 +0100
291
a19d4127
WB
292pve-firewall (3.0-4) unstable; urgency=medium
293
294 * fix issues with ipsets reloading unnecessarily or too late
295
296 * fix some typos in the logs
297
298 -- Proxmox Support Team <support@proxmox.com> Thu, 16 Nov 2017 11:41:56 +0100
299
c0c71b1b
WB
300pve-firewall (3.0-3) unstable; urgency=medium
301
302 * Fix #1492: logger: use current timestamp if the packet doesn't have one
303
304 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Sep 2017 14:43:06 +0200
305
4f7a4bdd
WB
306pve-firewall (3.0-2) unstable; urgency=medium
307
308 * Fix #1446: remove masks in case the package had previously been removed but
309 not purged.
310
311 * improve logging on errors in the firewall configuration
312
313 * forbid trailing commas in lists as iptables-restore doesn't support them
314
315 -- Proxmox Support Team <support@proxmox.com> Mon, 17 Jul 2017 15:24:40 +0200
316
29a94c79
FG
317pve-firewall (3.0-1) unstable; urgency=medium
318
319 * rebuild for Debian Stretch
320
321 -- Proxmox Support Team <support@proxmox.com> Thu, 9 Mar 2017 14:04:17 +0100
322
df67a3dc
DM
323pve-firewall (2.0-33) unstable; urgency=medium
324
325 * ipset: don't allow zero-prefix entries
326
327 -- Proxmox Support Team <support@proxmox.com> Tue, 29 Nov 2016 12:18:04 +0100
328
dc643b4d
DM
329pve-firewall (2.0-32) unstable; urgency=medium
330
331 * improve search for local-network
332
333 -- Proxmox Support Team <support@proxmox.com> Tue, 29 Nov 2016 06:35:08 +0100
334
45f206fd
DM
335pve-firewall (2.0-31) unstable; urgency=medium
336
337 * don't try to apply ports to rules which don't support them
338
339 -- Proxmox Support Team <support@proxmox.com> Thu, 06 Oct 2016 08:31:51 +0200
340
2ea28d0c
DM
341pve-firewall (2.0-30) unstable; urgency=medium
342
343 * add multicast DNS to the list of Macros
344
345 * add missing parameter descriptions
346
347 * build-depends: add dh-systemd
348
349 -- Proxmox Support Team <support@proxmox.com> Fri, 16 Sep 2016 08:53:16 +0200
350
b65d13d9
DM
351pve-firewall (2.0-29) unstable; urgency=medium
352
353 * prevent overwriting ipsets/sec. groups by renaming
354
355 -- Proxmox Support Team <support@proxmox.com> Fri, 03 Jun 2016 16:46:10 +0200
356
d0f3bb08
DM
357pve-firewall (2.0-28) unstable; urgency=medium
358
359 * use pve-common's ipv4_mask_hash_localnet
360
5c53cde4
DC
361 * fix allowed group name length
362
363 * make group digest stable
364
d0f3bb08
DM
365 -- Proxmox Support Team <support@proxmox.com> Fri, 03 Jun 2016 11:01:47 +0200
366
76a57e1a
DM
367pve-firewall (2.0-27) unstable; urgency=medium
368
369 * fix #972: make PVEFW-FWBR-* rule order stable
370
371 -- Proxmox Support Team <support@proxmox.com> Tue, 17 May 2016 07:59:52 +0200
372
17642172
DM
373pve-firewall (2.0-26) unstable; urgency=medium
374
375 * fix #988: set rp_filter=2
376
377 -- Proxmox Support Team <support@proxmox.com> Mon, 09 May 2016 10:01:28 +0200
378
6e29af12
DM
379pve-firewall (2.0-25) unstable; urgency=medium
380
381 * fix #945: add uninitialized check in lxc ipset compilation
382
383 -- Proxmox Support Team <support@proxmox.com> Thu, 21 Apr 2016 09:58:33 +0200
384
edb4aff5
DM
385pve-firewall (2.0-24) unstable; urgency=medium
386
387 * Build-Depend on pve-doc-generator
388
389 * generate manpage with pve-doc-generator
390
391 -- Proxmox Support Team <support@proxmox.com> Wed, 06 Apr 2016 10:52:45 +0200
392
e1158c15
DM
393pve-firewall (2.0-23) unstable; urgency=medium
394
395 * use only the top bit for our accept marks
396
397 -- Proxmox Support Team <support@proxmox.com> Fri, 01 Apr 2016 07:35:38 +0200
398
5399f912
DM
399pve-firewall (2.0-22) unstable; urgency=medium
400
401 * Use cfs_config_path from PVE::QemuConfig
402
403 -- Proxmox Support Team <support@proxmox.com> Tue, 08 Mar 2016 11:47:40 +0100
404
b9e73915
DM
405pve-firewall (2.0-21) unstable; urgency=medium
406
407 * added new 'ipfilter' option
408
409 -- Proxmox Support Team <support@proxmox.com> Thu, 03 Mar 2016 09:43:39 +0100
410
e2a49003
DM
411pve-firewall (2.0-20) unstable; urgency=medium
412
413 * fix 901: encode unicode characters in sha digest
414
415 -- Proxmox Support Team <support@proxmox.com> Mon, 29 Feb 2016 12:40:14 +0100
416
1d10f89a
DM
417pve-firewall (2.0-19) unstable; urgency=medium
418
419 * Add radv option to VM options
420
421 -- Proxmox Support Team <support@proxmox.com> Sat, 27 Feb 2016 10:24:42 +0100
422
666093cd
DM
423pve-firewall (2.0-18) unstable; urgency=medium
424
425 * Add ndp option to host and VM firewall options
426
427 * Add router-solicitation to NeighborDiscovery macro
428
429 -- Proxmox Support Team <support@proxmox.com> Fri, 19 Feb 2016 10:01:22 +0100
430
eaf25885
DM
431pve-firewall (2.0-17) unstable; urgency=medium
432
433 * Don't leave empty FW config files behind
434
435 -- Proxmox Support Team <support@proxmox.com> Mon, 08 Feb 2016 14:09:24 +0100
436
a177fb07
DM
437pve-firewall (2.0-16) unstable; urgency=medium
438
439 * logger: basic ipv6 support
440
441 * add DHCPv6 macro
442
443 * add dhcpv6 support to the dhcp option
444
445 -- Proxmox Support Team <support@proxmox.com> Tue, 26 Jan 2016 16:52:14 +0100
446
ab1b8d3c
DM
447pve-firewall (2.0-15) unstable; urgency=medium
448
449 * fix bug #859: use $security_group_name_pattern in iptables_get_chains
450
451 * fix some regular expressions mixups
452
453 -- Proxmox Support Team <support@proxmox.com> Thu, 07 Jan 2016 16:33:23 +0100
454
c9c8d7a3
DM
455pve-firewall (2.0-14) unstable; urgency=medium
456
457 * fix systemd service dependencies
458
459 -- Proxmox Support Team <support@proxmox.com> Fri, 27 Nov 2015 10:52:57 +0100
460
aa818ae7
DM
461pve-firewall (2.0-13) unstable; urgency=medium
462
463 * allow numeric icmp types
464
465 -- Proxmox Support Team <support@proxmox.com> Fri, 23 Oct 2015 13:21:53 +0200
466
8dbebe7d
DM
467pve-firewall (2.0-12) unstable; urgency=medium
468
469 * implement bash completions
470
471 * convert pve-firewall into a PVE::Service class
472
473 -- Proxmox Support Team <support@proxmox.com> Thu, 24 Sep 2015 12:15:00 +0200
474
47704f4c
DM
475pve-firewall (2.0-11) unstable; urgency=medium
476
477 * iptables_get_chains: fix veth device name
478
479 -- Proxmox Support Team <support@proxmox.com> Tue, 08 Sep 2015 07:54:35 +0200
480
9eb84dc7
DM
481pve-firewall (2.0-10) unstable; urgency=medium
482
483 * new helper: clone_vmfw_conf()
484
485 -- Proxmox Support Team <support@proxmox.com> Tue, 25 Aug 2015 06:47:49 +0200
486
a3d34dac
DM
487pve-firewall (2.0-9) unstable; urgency=medium
488
489 * remove firewall config file subroutine added
490
491 -- Proxmox Support Team <support@proxmox.com> Wed, 19 Aug 2015 15:42:51 +0200
492
2a42a237
DM
493pve-firewall (2.0-8) unstable; urgency=medium
494
495 * adopt regresion tests for lxc containers
496
497 * removed firewall code for openVZ
498
499 * Subroutine verify_rule fixed to correctly check only for "net\d+"
500 interface device names
501
502 -- Proxmox Support Team <support@proxmox.com> Wed, 12 Aug 2015 12:01:43 +0200
503
33448a6e
DM
504pve-firewall (2.0-7) unstable; urgency=medium
505
506 * added firewall code for lxc
507
508 -- Proxmox Support Team <support@proxmox.com> Mon, 10 Aug 2015 09:21:14 +0200
509
19f14465
DM
510pve-firewall (2.0-6) unstable; urgency=medium
511
512 * firewall ipversion comparison fix
513
514 -- Proxmox Support Team <support@proxmox.com> Tue, 04 Aug 2015 11:14:51 +0200
515
8feec9fa
DM
516pve-firewall (2.0-5) unstable; urgency=medium
517
518 * add ipv6 neighbor discovery and solicitation macros
519
520 * ip6tables accepts both spellings of the word neighbor
521
522 * added Ceph macro
523
524 -- Proxmox Support Team <support@proxmox.com> Mon, 27 Jul 2015 13:20:55 +0200
525
e02c77aa
DM
526pve-firewall (2.0-4) unstable; urgency=medium
527
528 * include manual page for pve-firewall
529
530 -- Proxmox Support Team <support@proxmox.com> Sat, 27 Jun 2015 16:26:28 +0200
531
eb4a2902
DM
532pve-firewall (2.0-3) unstable; urgency=medium
533
534 * use noawait trigers for pve-api-updates
535
536 -- Proxmox Support Team <support@proxmox.com> Mon, 01 Jun 2015 12:33:06 +0200
537
56bb2e69
DM
538pve-firewall (2.0-2) unstable; urgency=medium
539
540 * trigger pve-api-updates event
541
542 -- Proxmox Support Team <support@proxmox.com> Tue, 05 May 2015 15:10:24 +0200
543
0b18ebe8
DM
544pve-firewall (2.0-1) unstable; urgency=medium
545
546 * recompile for debian jessie
547
548 -- Proxmox Support Team <support@proxmox.com> Fri, 27 Feb 2015 12:22:04 +0100
549
609f00c7
DM
550pve-firewall (1.0-18) unstable; urgency=low
551
552 * fix alias lookup
553
554 -- Proxmox Support Team <support@proxmox.com> Mon, 09 Feb 2015 09:32:03 +0100
555
de48e659
DM
556pve-firewall (1.0-17) unstable; urgency=low
557
558 * fix restart behavior
559
560 -- Proxmox Support Team <support@proxmox.com> Thu, 15 Jan 2015 06:45:58 +0100
561
b92d2ed2
DM
562pve-firewall (1.0-16) unstable; urgency=low
563
564 * use new Daemon class from pve-common
565
566 -- Proxmox Support Team <support@proxmox.com> Thu, 18 Dec 2014 09:45:07 +0100
567
22dde8d6
DM
568pve-firewall (1.0-15) unstable; urgency=low
569
570 * bug fix: load cluster conf for host rules
571
572 -- Proxmox Support Team <support@proxmox.com> Fri, 12 Dec 2014 06:33:28 +0100
573
e33e2f16
DM
574pve-firewall (1.0-14) unstable; urgency=low
575
576 * do not use ipset list chains
577
578 * remove preinst script (not needed anymore)
579
580 -- Proxmox Support Team <support@proxmox.com> Fri, 05 Dec 2014 13:42:00 +0100
581
3bce273b
DM
582pve-firewall (1.0-13) unstable; urgency=low
583
584 * fix ipset remove order
585
586 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 12:45:48 +0100
587
7a7c322c
DM
588pve-firewall (1.0-12) unstable; urgency=low
589
590 * add preinst script to clear ipset from older installation (because
591 sets cannot be swapped if there type does not match.
ce41ae23 592
7a7c322c
DM
593 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 08:59:38 +0100
594
1b918ee5
DM
595pve-firewall (1.0-11) unstable; urgency=low
596
597 * bug fix: correctly set ipversion for aliases in verify_rule
598
599 * save restore commands into files to make debugging
600 easier (/var/lib/pve-firewall/)
601
602 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 08:04:05 +0100
603
df617cea
DM
604pve-firewall (1.0-10) unstable; urgency=low
605
606 * add IPv6 support for VMs (hostfw is IPv4 only)
607
608 -- Proxmox Support Team <support@proxmox.com> Wed, 26 Nov 2014 07:00:29 +0100
609
0ac57570
DM
610pve-firewall (1.0-9) unstable; urgency=low
611
612 * fix max ipset name name length
613
614 -- Proxmox Support Team <support@proxmox.com> Tue, 14 Oct 2014 16:29:34 +0200
615
05fd3b63
DM
616pve-firewall (1.0-8) unstable; urgency=low
617
618 * implement permission
619
620 -- Proxmox Support Team <support@proxmox.com> Mon, 08 Sep 2014 12:15:21 +0200
621
bea9d5ab
DM
622pve-firewall (1.0-7) unstable; urgency=low
623
624 * proxy host rule API calls to correct node
a34cfdd0
DM
625
626 * always generate MAC and IP filter rules if firewall is enabled on NIC
bea9d5ab
DM
627
628 -- Proxmox Support Team <support@proxmox.com> Thu, 26 Jun 2014 07:12:57 +0200
629
582275c3
DM
630pve-firewall (1.0-6) unstable; urgency=low
631
632 * ipmlement ipfilter ipsets
633
634 -- Proxmox Support Team <support@proxmox.com> Thu, 12 Jun 2014 08:37:08 +0200
635
de0c1e49
DM
636pve-firewall (1.0-5) unstable; urgency=low
637
638 * remove ipsets when firewall disabled
639
640 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 08:50:18 +0200
641
64c266f5
DM
642pve-firewall (1.0-4) unstable; urgency=low
643
644 * depend on iptables and ipset
645
646 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 06:45:33 +0200
647
16bcfa8b
DM
648pve-firewall (1.0-3) unstable; urgency=low
649
650 * change dh_installinit order (register pvefw-logger before pve-firewall)
651
652 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 06:24:21 +0200
653
ba0b3a0a
DM
654pve-firewall (1.0-2) unstable; urgency=low
655
656 * add experimental nflog logging daemon
657
658 -- Proxmox Support Team <support@proxmox.com> Thu, 13 Mar 2014 08:27:01 +0100
659
bb272dd3
DM
660pve-firewall (1.0-1) unstable; urgency=low
661
662 * initial package
663
664 -- Proxmox Support Team <support@proxmox.com> Mon, 03 Mar 2014 08:37:06 +0100
665