[netfilter-cvslog] [IPtables] annotated tag, svn_t_iptables_1_3_2, created. svn_t_iptables_1_3_2
Patrick McHardy
netfilter-cvslog-bounces at lists.netfilter.org
Wed May 14 19:11:21 CEST 2008
Gitweb: http://git.netfilter.org/cgi-bin/gitweb.cgi?p=iptables.git;a=commit;h=749ef593ab24b4120979b72a98ddd06e8ee46dc6
Commit: 749ef593ab24b4120979b72a98ddd06e8ee46dc6
Parent: 0000000000000000000000000000000000000000
The annotated tag, svn_t_iptables_1_3_2 has been created
at 749ef593ab24b4120979b72a98ddd06e8ee46dc6 (tag)
tagging 36ee4a4dd0ce0eab37c1aeac72353c0ebad42745 (commit)
replaces svn_t_iptables_1_3_1
tagged by Patrick McHardy
on Wed May 14 18:58:01 2008 +0200
- Log -----------------------------------------------------------------
Tag svn_t_iptables_1_3_2
/C=DE/ST=Berlin/L=Berlin/O=Netfilter Project/OU=Development/CN=kaber/emailAddress=kaber at netfilter.org (10):
improve REDIRECT manpage (Jonas Berlin <xkr47 at outerspace.dyndns.org>)
Fix TCPLAG version (Torsten Lüttgert <t.luettgert at pressestimmen.de>)
Fix connbytes command line parsing bug (Piotrek Kaczmarek <kaczorek at daleka.net>)
Ignore unknown arguments in libipt_ULOG (Patrick McHardy <kaber at trash.net>)
Fix CONNMARK save/restore (Tom Eastep <teastep at shorewall.net>, Pawel Sikora <pluto at agmk.net>)
update multiport manpage (Phil Oester <kernel at linuxace.com>)
[3/3] OSF: lib_ipt.c changes to support connector notifications (Evgeniy Polyakov <johnpol at 2ka.mipt.ru>)
Flush chain with noflush when it is redefined (Charlie Brady <charlieb-netfilter-devel at budge.apana.org.au>)
Chain name should not start with '!' (Yasuyuki Kozakai <yasuyuki.kozakai at toshiba.co.jp>)
Add --log-uid support to libip6t_LOG (Patrick McHardy <kaber at trash.net>)
/C=DE/ST=Berlin/L=Berlin/O=Netfilter Project/OU=Development/CN=kadlec/emailAddress=kadlec at netfilter.org (1):
SET target bugfix by Michal Pokrywka applied
/C=DE/ST=Berlin/L=Berlin/O=Netfilter Project/OU=Development/CN=laforge/emailAddress=laforge at netfilter.org (21):
the optflags array contains a '3' for the OPT_LINENUMBERS entry while everywhere else '0' is used (Jonas Berlin)
add lots of man pages (Jonas Berlin)
re-sync ip6tables with iptables (check for init functions) (Jonas Berlin)
don't allow newlines in LOG prefix (Phil Oester) (Closes: #312)
add REJECT with icmp-frag-needed (Florian Lohoff)
omeone forgot to update ipt_conntrack.h header in user space. So, update it to use ip_conntrack_old_tuple. (Pablo Neira)
fix iptables-save/restore of goto (Jonas Berlin)
poll goto specific changes out of trunk
pull out pmtu changes to fix compilation issues
include FIN bit in mask of "--syn" bits
Release previously merged options from merge_opts(), reduces memory-usage of iptables-restore dramatically (Pablo Neira)
This patch prevents user to set negative port value of SNAT/DNAT.
reduce code replication of parse_interface() (Yasuyuki Kozakai)
fix deletion of targets where kernel size != userspace size (Pablo Neira)
we don't have any counter issues in sparc64
add pointer to bugzilla
attempt to fix save/restore of '! --uid-owner squid' problem as reported by Costa Tsaousis (backport from ipv4 owner)
add note to https://bugzilla.netfilter.org/bugzilla/show_bug.cgi?id=334
bump version number to 1.3.2
we need to have this header file included, since old kernels don't define IP6T_LOG_UID.
fix various missing header file / #define issues on old kernels. I've now tested compilation with kernels starting 2.4.17
/C=DE/ST=Berlin/L=Berlin/O=Netfilter Project/OU=Development/CN=rusty/emailAddress=rusty at netfilter.org (1):
While adding testing for inversion of multiport, noticed that documentation about --ports is *wrong*. Ports do not have to be equal: either dest or src being in list is enough for match.
-----------------------------------------------------------------------
hooks/post-receive
--
IPtables
More information about the netfilter-cvslog
mailing list