From: Alexandre Derumier Date: Wed, 14 May 2014 06:05:26 +0000 (+0200) Subject: remove optimize option X-Git-Url: https://git.proxmox.com/?p=pve-firewall.git;a=commitdiff_plain;h=c50a5a68865bfb9dff4644a7ffbe6fca14d40af9 remove optimize option new model is already optimized, no need to have tricks now Signed-off-by: Alexandre Derumier --- diff --git a/debian/example/host.fw b/debian/example/host.fw index 77f7f4b..04ab001 100644 --- a/debian/example/host.fw +++ b/debian/example/host.fw @@ -20,9 +20,6 @@ nosmurfs: 0 # filter illegal combinations of TCP flags tcpflags: 1 -# rules processing speed optimizations -optimize : 1 - [RULES] IN SSH(ACCEPT) net0 diff --git a/src/PVE/Firewall.pm b/src/PVE/Firewall.pm index 8819199..03cafb8 100644 --- a/src/PVE/Firewall.pm +++ b/src/PVE/Firewall.pm @@ -1853,7 +1853,7 @@ sub parse_hostfw_option { my $loglevels = "emerg|alert|crit|err|warning|notice|info|debug|nolog"; - if ($line =~ m/^(enable|nosmurfs|tcpflags|optimize):\s*(0|1)\s*$/i) { + if ($line =~ m/^(enable|nosmurfs|tcpflags):\s*(0|1)\s*$/i) { $opt = lc($1); $value = int($2); } elsif ($line =~ m/^(log_level_in|log_level_out|tcp_flags_log_level|smurf_log_level):\s*(($loglevels)\s*)?$/i) {