]> git.proxmox.com Git - pve-firewall.git/blob - debian/changelog
fa6240b4fc90f1779b822d92a58c3245ff51e20e
[pve-firewall.git] / debian / changelog
1 pve-firewall (4.3-1) UNRELEASED; urgency=medium
2
3 * allow entering IP address whith the host bits (those inside the mask) not
4 being all zero non-zero, like 192.168.1.155/24 for example.
5
6 * api: firewall logger: add optional parameters `since` and `until` for
7 time-range filtering
8
9 * fix #4550: host options: add nf_conntrack_helpers to compensate that
10 kernel 6.1 and newer have removed the auto helpers
11
12 -- Proxmox Support Team <support@proxmox.com> Fri, 17 Mar 2023 15:24:56 +0100
13
14 pve-firewall (4.2-7) bullseye; urgency=medium
15
16 * fix #4018: add firewall macro for SPICE proxy
17
18 * fix #4204: automatically update each usage of a group to the new ID when
19 it is renamed
20
21 * fix #4268: add 'force' parameter to delete IPSet with members
22
23 -- Proxmox Support Team <support@proxmox.com> Thu, 17 Nov 2022 19:53:04 +0100
24
25 pve-firewall (4.2-6) bullseye; urgency=medium
26
27 * config defaults: document that the mac filter defaults to on
28
29 * fix #4175: ignore non-filter ebtables tables
30
31 * fix enabling ebtables if VM firewall config is invalid
32
33 -- Proxmox Support Team <support@proxmox.com> Mon, 29 Aug 2022 09:43:53 +0200
34
35 pve-firewall (4.2-5) bullseye; urgency=medium
36
37 * fix #3677 ipset get chains: handle newer ipset output for actual
38 change detection
39
40 -- Proxmox Support Team <support@proxmox.com> Thu, 04 Nov 2021 16:37:13 +0100
41
42 pve-firewall (4.2-4) bullseye; urgency=medium
43
44 * re-build to avoid issues stemming from semi-broken systemd-debhelper version
45
46 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Oct 2021 10:39:05 +0200
47
48 pve-firewall (4.2-3) bullseye; urgency=medium
49
50 * fix #2721: remove the (nowadays) bogus reject for TCP port 43 from the
51 default drop and reject actions
52
53 -- Proxmox Support Team <support@proxmox.com> Fri, 10 Sep 2021 13:00:07 +0200
54
55 pve-firewall (4.2-2) bullseye; urgency=medium
56
57 * re-set relevant sysctls on every apply round
58
59 -- Proxmox Support Team <support@proxmox.com> Mon, 21 Jun 2021 11:31:42 +0200
60
61 pve-firewall (4.2-1) bullseye; urgency=medium
62
63 * fix #967: source: dest: limit length
64
65 * re-build for Debian 11 Bullseye based releases (Proxmox VE 7)
66
67 * fix #2358: allow --<opt> in firewall rule config files
68
69 -- Proxmox Support Team <support@proxmox.com> Wed, 12 May 2021 20:32:30 +0200
70
71 pve-firewall (4.1-3) pve; urgency=medium
72
73 * fix #2773: ebtables: keep policy of custom chains
74
75 * introduce new icmp-type parameter
76
77 -- Proxmox Support Team <support@proxmox.com> Fri, 18 Sep 2020 16:51:27 +0200
78
79 pve-firewall (4.1-2) pve; urgency=medium
80
81 * revert: rules: verify referenced security group exists
82
83 -- Proxmox Support Team <support@proxmox.com> Wed, 06 May 2020 17:41:36 +0200
84
85 pve-firewall (4.1-1) pve; urgency=medium
86
87 * logging: add missing log message for inbound rules
88
89 * fix #2686: avoid adding 'arp-ip-src' IP filter if guests uses DHCP
90
91 * IPSets: parse the CIDR before checking for duplicates
92
93 * verify that a referenced security group exists
94
95 * ICMP: fix iptables-restore failing if ICMP-type values bigger than '255'
96
97 * ICMP: allow one to specify the 'echo-reply' (0) type also as integer
98
99 * improve handling concurrent (parallel) access and modifications to rules
100
101 -- Proxmox Support Team <support@proxmox.com> Mon, 04 May 2020 15:01:57 +0200
102
103 pve-firewall (4.0-10) pve; urgency=medium
104
105 * macros: add macro for Proxmox Mail Gateway web interface
106
107 * api node: always pass cluster conf to node FW parser to fix false positive
108 error message about non existing aliases, or IP sets, when querying the
109 node FW options GET API call.
110
111 * grammar fix: s/does not exists/does not exist/g
112
113 -- Proxmox Support Team <support@proxmox.com> Mon, 27 Jan 2020 19:25:49 +0100
114
115 pve-firewall (4.0-9) pve; urgency=medium
116
117 * ensure port range used for offline storage migration and insecure migration
118 traffic is allowed by default rule set.
119
120 -- Proxmox Support Team <support@proxmox.com> Tue, 03 Dec 2019 08:12:20 +0100
121
122 pve-firewall (4.0-8) pve; urgency=medium
123
124 * increase default nf_conntrack_max to the kernel's default
125
126 * fix some "use of uninitialized value" warnings when updating CIDRs
127
128 * update schema documentation
129
130 * add explicit dependency on libpve-cluster-perl
131
132 * add support for "raw" tables
133
134 * add options for synflood protection for host firewall:
135 - nf_conntrack_tcp_timeout_syn_recv
136 - protection_synflood: boolean
137 - protection_synflood_rate: SYN rate limit (default 200 per second)
138 - protection_synflood_burst: SYN burst limit (default 1000)
139
140 -- Proxmox Support Team <support@proxmox.com> Mon, 18 Nov 2019 13:48:20 +0100
141
142 pve-firewall (4.0-7) pve; urgency=medium
143
144 * only add VM chains and rules if VM firewall is enabled
145
146 -- Proxmox Support Team <support@proxmox.com> Wed, 7 Aug 2019 10:55:06 +0200
147
148 pve-firewall (4.0-6) pve; urgency=medium
149
150 * firewall macros: add new Ceph protocol v2 port while keeping v1 port
151
152 -- Proxmox Support Team <support@proxmox.com> Tue, 23 Jul 2019 18:57:48 +0200
153
154 pve-firewall (4.0-5) pve; urgency=medium
155
156 * don't use any base path at all for calls to external binaries to make use
157 compativle with bot, /usr merged and unmerged setups
158
159 -- Proxmox Support Team <support@proxmox.com> Fri, 12 Jul 2019 11:47:53 +0200
160
161 pve-firewall (4.0-4) pve; urgency=medium
162
163 * ebtables: remove PVE chains properly
164
165 * ebtables: treat chain deletion as change
166
167 * use /usr/sbin as base path
168
169 -- Proxmox Support Team <support@proxmox.com> Thu, 11 Jul 2019 19:40:01 +0200
170
171 pve-firewall (4.0-3) pve; urgency=medium
172
173 * Create corosync firewall rules independently of localnet~
174
175 * Display corosync rule info on localnet call
176
177 -- Proxmox Support Team <support@proxmox.com> Thu, 04 Jul 2019 15:56:11 +0200
178
179 pve-firewall (4.0-2) pve; urgency=medium
180
181 * fix systemd warning about PIDFile directory
182
183 * fix CT rule generation with ipfilter set
184
185 * pve-firewall service: update-alternative iptables and ebtables to working
186 legacy versions
187
188 -- Proxmox Support Team <support@proxmox.com> Mon, 24 Jun 2019 20:43:21 +0200
189
190 pve-firewall (4.0-1) pve; urgency=medium
191
192 * re-build for Debian Buster / PVE 6
193
194 -- Proxmox Support Team <support@proxmox.com> Tue, 21 May 2019 22:28:55 +0200
195
196 pve-firewall (3.0-21) unstable; urgency=medium
197
198 * fix ipv6 PVEFW-reject
199
200 * fix #2193: arpfilter: CT: remove mask from net IP/CIDR to avoid
201 ebtables doing the wrong thing here
202
203 -- Proxmox Support Team <support@proxmox.com> Wed, 08 May 2019 10:09:31 +0000
204
205 pve-firewall (3.0-20) unstable; urgency=medium
206
207 * use IPCC to read config and rule files, if the are backed by pmxcfs which
208 has better handling for pmxcfs restarts
209
210 * fix #2178: endless loop on ipv6 extension headers
211
212 -- Proxmox Support Team <support@proxmox.com> Fri, 19 Apr 2019 05:10:13 +0000
213
214 pve-firewall (3.0-19) unstable; urgency=medium
215
216 * ebtables: add arp filtering
217
218 * fix: #2123 Logging of user defined firewall rules
219
220 * fix Razor macro
221
222 * allow to enable/disable and modify cluster wide log ratelimits
223
224 -- Proxmox Support Team <support@proxmox.com> Tue, 02 Apr 2019 11:15:16 +0200
225
226 pve-firewall (3.0-18) unstable; urgency=medium
227
228 * fix #1606: Add nf_conntrack_allow_invalid option
229
230 * log reject : add space after policy REJECT like drop
231
232 * fix #1891: Add zsh command completion for pve-firewall
233
234 -- Proxmox Support Team <support@proxmox.com> Mon, 04 Mar 2019 10:27:01 +0100
235
236 pve-firewall (3.0-17) unstable; urgency=medium
237
238 * fix #2005: only allow ascii port digits
239
240 * fix #2004: do not allow backwards ranges
241
242 * add conntrack logging via libnetfilter_conntrack and allow one to enable
243 it through the firewall host configuration
244
245 -- Proxmox Support Team <support@proxmox.com> Wed, 09 Jan 2019 16:56:17 +0100
246
247 pve-firewall (3.0-16) unstable; urgency=medium
248
249 * api/rules: fix macro return type
250
251 -- Proxmox Support Team <support@proxmox.com> Fri, 30 Nov 2018 16:02:59 +0100
252
253 pve-firewall (3.0-15) unstable; urgency=medium
254
255 * fix #1971: display firewall rule properties
256
257 -- Proxmox Support Team <support@proxmox.com> Fri, 23 Nov 2018 14:01:33 +0100
258
259 pve-firewall (3.0-14) unstable; urgency=medium
260
261 * fix #1841: avoid ebtable reloads when containers have multiple network
262 interfaces
263
264 -- Proxmox Support Team <support@proxmox.com> Fri, 24 Aug 2018 10:51:04 +0200
265
266 pve-firewall (3.0-13) unstable; urgency=medium
267
268 * avoid unnecessary reloads of ebtable ruleset
269
270 -- Proxmox Support Team <support@proxmox.com> Thu, 28 Jun 2018 14:47:16 +0200
271
272 pve-firewall (3.0-12) unstable; urgency=medium
273
274 * fix deleted iptables chains not being properly detected as a change
275
276 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Jun 2018 12:01:02 +0200
277
278 pve-firewall (3.0-11) unstable; urgency=medium
279
280 * #1764: rename 'ebtales_enable' option to 'ebtables'
281
282 -- Proxmox Support Team <support@proxmox.com> Wed, 06 Jun 2018 16:18:13 +0200
283
284 pve-firewall (3.0-10) unstable; urgency=medium
285
286 * fix #1764: handle existing ebtables rules and allow disabling ebtables
287
288 * ebtables handling can be disabled via /etc/pve/firewall/cluster.fw's new
289 ebtables_enable option.
290
291 -- Proxmox Support Team <support@proxmox.com> Tue, 29 May 2018 15:14:33 +0200
292
293 pve-firewall (3.0-9) unstable; urgency=medium
294
295 * fix creation of ebltables FORWARD rule entry
296
297 -- Proxmox Support Team <support@proxmox.com> Thu, 17 May 2018 14:41:27 +0200
298
299 pve-firewall (3.0-8) unstable; urgency=medium
300
301 * add ebtables support for better MAC filtering
302
303 -- Proxmox Support Team <support@proxmox.com> Wed, 11 Apr 2018 14:25:41 +0200
304
305 pve-firewall (3.0-7) unstable; urgency=medium
306
307 * support distinct source and destination multi-port matching
308
309 * multi-port matching: when specifying the same list of ports for source and
310 destination require them both to match, rather than one of them, as this
311 was rather unexpected behavior
312
313 -- Proxmox Support Team <support@proxmox.com> Mon, 12 Mar 2018 14:58:08 +0100
314
315 pve-firewall (3.0-6) unstable; urgency=medium
316
317 * fix #1319: don't fail postinst with masked service
318
319 * debian: switch to compat 9, drop init scripts, drop preinst
320
321 * check multiport limit in port ranges
322
323 * build: use git rev-parse for GITVERSION
324
325 -- Proxmox Support Team <support@proxmox.com> Thu, 08 Mar 2018 13:53:11 +0100
326
327 pve-firewall (3.0-5) unstable; urgency=medium
328
329 * fix issue with disabled flag not being honored within groups
330
331 -- Proxmox Support Team <support@proxmox.com> Thu, 07 Dec 2017 08:31:42 +0100
332
333 pve-firewall (3.0-4) unstable; urgency=medium
334
335 * fix issues with ipsets reloading unnecessarily or too late
336
337 * fix some typos in the logs
338
339 -- Proxmox Support Team <support@proxmox.com> Thu, 16 Nov 2017 11:41:56 +0100
340
341 pve-firewall (3.0-3) unstable; urgency=medium
342
343 * Fix #1492: logger: use current timestamp if the packet doesn't have one
344
345 -- Proxmox Support Team <support@proxmox.com> Tue, 12 Sep 2017 14:43:06 +0200
346
347 pve-firewall (3.0-2) unstable; urgency=medium
348
349 * Fix #1446: remove masks in case the package had previously been removed but
350 not purged.
351
352 * improve logging on errors in the firewall configuration
353
354 * forbid trailing commas in lists as iptables-restore doesn't support them
355
356 -- Proxmox Support Team <support@proxmox.com> Mon, 17 Jul 2017 15:24:40 +0200
357
358 pve-firewall (3.0-1) unstable; urgency=medium
359
360 * rebuild for Debian Stretch
361
362 -- Proxmox Support Team <support@proxmox.com> Thu, 9 Mar 2017 14:04:17 +0100
363
364 pve-firewall (2.0-33) unstable; urgency=medium
365
366 * ipset: don't allow zero-prefix entries
367
368 -- Proxmox Support Team <support@proxmox.com> Tue, 29 Nov 2016 12:18:04 +0100
369
370 pve-firewall (2.0-32) unstable; urgency=medium
371
372 * improve search for local-network
373
374 -- Proxmox Support Team <support@proxmox.com> Tue, 29 Nov 2016 06:35:08 +0100
375
376 pve-firewall (2.0-31) unstable; urgency=medium
377
378 * don't try to apply ports to rules which don't support them
379
380 -- Proxmox Support Team <support@proxmox.com> Thu, 06 Oct 2016 08:31:51 +0200
381
382 pve-firewall (2.0-30) unstable; urgency=medium
383
384 * add multicast DNS to the list of Macros
385
386 * add missing parameter descriptions
387
388 * build-depends: add dh-systemd
389
390 -- Proxmox Support Team <support@proxmox.com> Fri, 16 Sep 2016 08:53:16 +0200
391
392 pve-firewall (2.0-29) unstable; urgency=medium
393
394 * prevent overwriting ipsets/sec. groups by renaming
395
396 -- Proxmox Support Team <support@proxmox.com> Fri, 03 Jun 2016 16:46:10 +0200
397
398 pve-firewall (2.0-28) unstable; urgency=medium
399
400 * use pve-common's ipv4_mask_hash_localnet
401
402 * fix allowed group name length
403
404 * make group digest stable
405
406 -- Proxmox Support Team <support@proxmox.com> Fri, 03 Jun 2016 11:01:47 +0200
407
408 pve-firewall (2.0-27) unstable; urgency=medium
409
410 * fix #972: make PVEFW-FWBR-* rule order stable
411
412 -- Proxmox Support Team <support@proxmox.com> Tue, 17 May 2016 07:59:52 +0200
413
414 pve-firewall (2.0-26) unstable; urgency=medium
415
416 * fix #988: set rp_filter=2
417
418 -- Proxmox Support Team <support@proxmox.com> Mon, 09 May 2016 10:01:28 +0200
419
420 pve-firewall (2.0-25) unstable; urgency=medium
421
422 * fix #945: add uninitialized check in lxc ipset compilation
423
424 -- Proxmox Support Team <support@proxmox.com> Thu, 21 Apr 2016 09:58:33 +0200
425
426 pve-firewall (2.0-24) unstable; urgency=medium
427
428 * Build-Depend on pve-doc-generator
429
430 * generate manpage with pve-doc-generator
431
432 -- Proxmox Support Team <support@proxmox.com> Wed, 06 Apr 2016 10:52:45 +0200
433
434 pve-firewall (2.0-23) unstable; urgency=medium
435
436 * use only the top bit for our accept marks
437
438 -- Proxmox Support Team <support@proxmox.com> Fri, 01 Apr 2016 07:35:38 +0200
439
440 pve-firewall (2.0-22) unstable; urgency=medium
441
442 * Use cfs_config_path from PVE::QemuConfig
443
444 -- Proxmox Support Team <support@proxmox.com> Tue, 08 Mar 2016 11:47:40 +0100
445
446 pve-firewall (2.0-21) unstable; urgency=medium
447
448 * added new 'ipfilter' option
449
450 -- Proxmox Support Team <support@proxmox.com> Thu, 03 Mar 2016 09:43:39 +0100
451
452 pve-firewall (2.0-20) unstable; urgency=medium
453
454 * fix 901: encode unicode characters in sha digest
455
456 -- Proxmox Support Team <support@proxmox.com> Mon, 29 Feb 2016 12:40:14 +0100
457
458 pve-firewall (2.0-19) unstable; urgency=medium
459
460 * Add radv option to VM options
461
462 -- Proxmox Support Team <support@proxmox.com> Sat, 27 Feb 2016 10:24:42 +0100
463
464 pve-firewall (2.0-18) unstable; urgency=medium
465
466 * Add ndp option to host and VM firewall options
467
468 * Add router-solicitation to NeighborDiscovery macro
469
470 -- Proxmox Support Team <support@proxmox.com> Fri, 19 Feb 2016 10:01:22 +0100
471
472 pve-firewall (2.0-17) unstable; urgency=medium
473
474 * Don't leave empty FW config files behind
475
476 -- Proxmox Support Team <support@proxmox.com> Mon, 08 Feb 2016 14:09:24 +0100
477
478 pve-firewall (2.0-16) unstable; urgency=medium
479
480 * logger: basic ipv6 support
481
482 * add DHCPv6 macro
483
484 * add dhcpv6 support to the dhcp option
485
486 -- Proxmox Support Team <support@proxmox.com> Tue, 26 Jan 2016 16:52:14 +0100
487
488 pve-firewall (2.0-15) unstable; urgency=medium
489
490 * fix bug #859: use $security_group_name_pattern in iptables_get_chains
491
492 * fix some regular expressions mixups
493
494 -- Proxmox Support Team <support@proxmox.com> Thu, 07 Jan 2016 16:33:23 +0100
495
496 pve-firewall (2.0-14) unstable; urgency=medium
497
498 * fix systemd service dependencies
499
500 -- Proxmox Support Team <support@proxmox.com> Fri, 27 Nov 2015 10:52:57 +0100
501
502 pve-firewall (2.0-13) unstable; urgency=medium
503
504 * allow numeric icmp types
505
506 -- Proxmox Support Team <support@proxmox.com> Fri, 23 Oct 2015 13:21:53 +0200
507
508 pve-firewall (2.0-12) unstable; urgency=medium
509
510 * implement bash completions
511
512 * convert pve-firewall into a PVE::Service class
513
514 -- Proxmox Support Team <support@proxmox.com> Thu, 24 Sep 2015 12:15:00 +0200
515
516 pve-firewall (2.0-11) unstable; urgency=medium
517
518 * iptables_get_chains: fix veth device name
519
520 -- Proxmox Support Team <support@proxmox.com> Tue, 08 Sep 2015 07:54:35 +0200
521
522 pve-firewall (2.0-10) unstable; urgency=medium
523
524 * new helper: clone_vmfw_conf()
525
526 -- Proxmox Support Team <support@proxmox.com> Tue, 25 Aug 2015 06:47:49 +0200
527
528 pve-firewall (2.0-9) unstable; urgency=medium
529
530 * remove firewall config file subroutine added
531
532 -- Proxmox Support Team <support@proxmox.com> Wed, 19 Aug 2015 15:42:51 +0200
533
534 pve-firewall (2.0-8) unstable; urgency=medium
535
536 * adopt regresion tests for lxc containers
537
538 * removed firewall code for openVZ
539
540 * Subroutine verify_rule fixed to correctly check only for "net\d+"
541 interface device names
542
543 -- Proxmox Support Team <support@proxmox.com> Wed, 12 Aug 2015 12:01:43 +0200
544
545 pve-firewall (2.0-7) unstable; urgency=medium
546
547 * added firewall code for lxc
548
549 -- Proxmox Support Team <support@proxmox.com> Mon, 10 Aug 2015 09:21:14 +0200
550
551 pve-firewall (2.0-6) unstable; urgency=medium
552
553 * firewall ipversion comparison fix
554
555 -- Proxmox Support Team <support@proxmox.com> Tue, 04 Aug 2015 11:14:51 +0200
556
557 pve-firewall (2.0-5) unstable; urgency=medium
558
559 * add ipv6 neighbor discovery and solicitation macros
560
561 * ip6tables accepts both spellings of the word neighbor
562
563 * added Ceph macro
564
565 -- Proxmox Support Team <support@proxmox.com> Mon, 27 Jul 2015 13:20:55 +0200
566
567 pve-firewall (2.0-4) unstable; urgency=medium
568
569 * include manual page for pve-firewall
570
571 -- Proxmox Support Team <support@proxmox.com> Sat, 27 Jun 2015 16:26:28 +0200
572
573 pve-firewall (2.0-3) unstable; urgency=medium
574
575 * use noawait trigers for pve-api-updates
576
577 -- Proxmox Support Team <support@proxmox.com> Mon, 01 Jun 2015 12:33:06 +0200
578
579 pve-firewall (2.0-2) unstable; urgency=medium
580
581 * trigger pve-api-updates event
582
583 -- Proxmox Support Team <support@proxmox.com> Tue, 05 May 2015 15:10:24 +0200
584
585 pve-firewall (2.0-1) unstable; urgency=medium
586
587 * recompile for debian jessie
588
589 -- Proxmox Support Team <support@proxmox.com> Fri, 27 Feb 2015 12:22:04 +0100
590
591 pve-firewall (1.0-18) unstable; urgency=low
592
593 * fix alias lookup
594
595 -- Proxmox Support Team <support@proxmox.com> Mon, 09 Feb 2015 09:32:03 +0100
596
597 pve-firewall (1.0-17) unstable; urgency=low
598
599 * fix restart behavior
600
601 -- Proxmox Support Team <support@proxmox.com> Thu, 15 Jan 2015 06:45:58 +0100
602
603 pve-firewall (1.0-16) unstable; urgency=low
604
605 * use new Daemon class from pve-common
606
607 -- Proxmox Support Team <support@proxmox.com> Thu, 18 Dec 2014 09:45:07 +0100
608
609 pve-firewall (1.0-15) unstable; urgency=low
610
611 * bug fix: load cluster conf for host rules
612
613 -- Proxmox Support Team <support@proxmox.com> Fri, 12 Dec 2014 06:33:28 +0100
614
615 pve-firewall (1.0-14) unstable; urgency=low
616
617 * do not use ipset list chains
618
619 * remove preinst script (not needed anymore)
620
621 -- Proxmox Support Team <support@proxmox.com> Fri, 05 Dec 2014 13:42:00 +0100
622
623 pve-firewall (1.0-13) unstable; urgency=low
624
625 * fix ipset remove order
626
627 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 12:45:48 +0100
628
629 pve-firewall (1.0-12) unstable; urgency=low
630
631 * add preinst script to clear ipset from older installation (because
632 sets cannot be swapped if there type does not match.
633
634 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 08:59:38 +0100
635
636 pve-firewall (1.0-11) unstable; urgency=low
637
638 * bug fix: correctly set ipversion for aliases in verify_rule
639
640 * save restore commands into files to make debugging
641 easier (/var/lib/pve-firewall/)
642
643 -- Proxmox Support Team <support@proxmox.com> Fri, 28 Nov 2014 08:04:05 +0100
644
645 pve-firewall (1.0-10) unstable; urgency=low
646
647 * add IPv6 support for VMs (hostfw is IPv4 only)
648
649 -- Proxmox Support Team <support@proxmox.com> Wed, 26 Nov 2014 07:00:29 +0100
650
651 pve-firewall (1.0-9) unstable; urgency=low
652
653 * fix max ipset name name length
654
655 -- Proxmox Support Team <support@proxmox.com> Tue, 14 Oct 2014 16:29:34 +0200
656
657 pve-firewall (1.0-8) unstable; urgency=low
658
659 * implement permission
660
661 -- Proxmox Support Team <support@proxmox.com> Mon, 08 Sep 2014 12:15:21 +0200
662
663 pve-firewall (1.0-7) unstable; urgency=low
664
665 * proxy host rule API calls to correct node
666
667 * always generate MAC and IP filter rules if firewall is enabled on NIC
668
669 -- Proxmox Support Team <support@proxmox.com> Thu, 26 Jun 2014 07:12:57 +0200
670
671 pve-firewall (1.0-6) unstable; urgency=low
672
673 * ipmlement ipfilter ipsets
674
675 -- Proxmox Support Team <support@proxmox.com> Thu, 12 Jun 2014 08:37:08 +0200
676
677 pve-firewall (1.0-5) unstable; urgency=low
678
679 * remove ipsets when firewall disabled
680
681 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 08:50:18 +0200
682
683 pve-firewall (1.0-4) unstable; urgency=low
684
685 * depend on iptables and ipset
686
687 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 06:45:33 +0200
688
689 pve-firewall (1.0-3) unstable; urgency=low
690
691 * change dh_installinit order (register pvefw-logger before pve-firewall)
692
693 -- Proxmox Support Team <support@proxmox.com> Wed, 04 Jun 2014 06:24:21 +0200
694
695 pve-firewall (1.0-2) unstable; urgency=low
696
697 * add experimental nflog logging daemon
698
699 -- Proxmox Support Team <support@proxmox.com> Thu, 13 Mar 2014 08:27:01 +0100
700
701 pve-firewall (1.0-1) unstable; urgency=low
702
703 * initial package
704
705 -- Proxmox Support Team <support@proxmox.com> Mon, 03 Mar 2014 08:37:06 +0100
706