1. 4ebfad0 changes IP6T_SO_GET_REVISION_{MATCH,TARGET} to 68,69 by Yasuyuki KOZAKAI · 18 years ago
  2. 0665217 - Add revision support to ip6tables. by Rémi Denis-Courmont · 18 years ago
  3. 42bd67b Fix spelling error by Patrick McHardy · 18 years ago
  4. ed26b7b iptables segfaults when given "" to --log-prefix (Mike Frysinger <vapier@gentoo.org>) by Mike Frysinger · 18 years ago
  5. b34bef5 Add endian annotation types to fix compilation for kernels > 2.6.18 by Patrick McHardy · 18 years ago
  6. 22e4965 Version number was not bumped in Makefile in svn by Joszef Kadlecsik · 18 years ago
  7. 48b46a6 Use correct types at error reporting (patch sent by H. Nakano) by Joszef Kadlecsik · 18 years ago
  8. 2d1a297 Use negative-list for "weird character in interface" warning instead of warning for basically every non-alphanumeric character. by Patrick McHardy · 18 years ago
  9. ca9d8c2 Named realm (Simon Lodal <simon@parknet.dk>) by Simon Lodal · 18 years ago
  10. 10e0fbb Add statistic match extension by Patrick McHardy · 18 years ago
  11. 09c8e30 iptables: fix ipt_MARK documentation (Eric Leblond) by Eric Leblond · 18 years ago
  12. e5bd1d7 iptables -Z clears the per-rule counters, but not the chain policy counters (Andy Gay <andy@andynet.net>) by Andy Gay · 18 years ago
  13. ae35309 update quota match for xtables + fix -D bug (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  14. c1eae41 Revert "proto_to_name duplication" patch, as noticed by Yasuyuki it can cause by Patrick McHardyJesper Brouer · 18 years ago
  15. a6c1d92 proto_to_name duplication (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  16. 04a1e4c BUG: libiptc chain references bug (Jesper Brouer <hawk@diku.dk>) by Patrick McHardyJesper Brouer · 18 years ago
  17. dbac8ad reduce parse_*_port duplication (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  18. 58179b1 reduce service_to_port duplication (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  19. 7f5be62 Use gcc to build shared objects (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  20. 5549ad0 iptables: handle cidr notation more sanely (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  21. 8a173ef please kill santa-claus (Pierre-Yves Ritschard <pierre-yves@spootnik.org>) by Pierre-Yves Ritschard · 18 years ago
  22. 7006729 libiptc symbols clash (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  23. b1cda88 - force user to specify --icmpv6-type if icmpv6 match is required to load by Yasuyuki KOZAKAI · 18 years ago
  24. b46d0b2 ip6tables multiport does not support x:y (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  25. 1da8351 iptables trivial compile warning cleanup (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  26. 45ce294 size_t changed to socklen_t in getsockopt call by Joszef Kadlecsik · 18 years ago
  27. a05720b set match negation bug fixed by Joszef Kadlecsik · 18 years ago
  28. 3836fcc REDIRECT does not accept IP (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  29. 056564f Add new exit value to indicate concurrency issues (Jesper Dangaard Brouer <hawk@comx.dk>) by Jesper Dangaard Brouer · 18 years ago
  30. 75efcae trivial connlimit manpage fix (Phil Oester <kernel@linuxace.com>) by Phil Oester · 18 years ago
  31. a895b9c Use lowercase letters for match name (Simon Lodal <simonl@parknet.dk>) by Simon Lodal · 18 years ago
  32. 8185801 Add information about :<port> syntax (Evan Miller <evanm@frap.net>) by Evan Miller · 18 years ago
  33. 630da41 secmark: Add libip6t_CONNSECMARK by James Morris · 18 years ago
  34. ff96830 D'oh .. I'm not too smart, forgot to add the new files in the previous patches :) by Patrick McHardy · 18 years ago
  35. 517ac15 secmark: Add libipt_CONNSECMARK by James Morris · 18 years ago
  36. d718220 secmark: Add libip6t_SECMARK by James Morris · 18 years ago
  37. 843b959 secmark: Add libipt_SECMARK by James Morris · 18 years ago
  38. c81a3f3 secmark: Add libselinux support by James Morris · 18 years ago
  39. 2452baf Add DCCP/SCTP support to multiport. Patch for kernel will go in 2.6.18. by Patrick McHardy · 18 years ago
  40. f8ec61f Replace annoying "Something wrong... deleting dependencies" message by something more useful. by Patrick McHardy · 18 years ago
  41. e0865ad Don't overwrite errno with return value of setsockopt (which is -1 on error). by Patrick McHardy · 18 years ago
  42. a7dd0e4 Revert incorrect fix for "Unknown error 4294967295" problem by Patrick McHardyHarald Welte · 18 years ago
  43. 2998554 When entering an invalid command (such as iptables -A INPUT -j MARK --set-mark by Harald Welte · 18 years ago
  44. 2cfbd9f In ip[6]tables.c, NUMBER_OF_OPT was increased to 12 for the OPT_COUNTERS by Patrick McHardyHarald Welte · 18 years ago
  45. 0eca33f cmdflags is used in cmd2char() to return the option for a command. It uses the by Harald Welte · 18 years ago
  46. 2c627cf [IPTABLES,IP6TABLES]: check invalid esp spi range by Yasuyuki KOZAKAI · 18 years ago
  47. 85872c8 [IP6TABLES] kill manual comparing protocol name with "ipv6-icmp". by Yasuyuki KOZAKAI · 18 years ago
  48. 1f312c2 fix loading shared library of ICMPv6 match. by Yasuyuki KOZAKAI · 18 years ago
  49. 708e058 [IPTABLES,IP6TABLES]: fix the path to detect esp/connbytes support in kernel by Harald Welte · 18 years ago
  50. a52b8fe Correct iptables-save output of osf module (Daniel De Graaf) by Daniel De Graaf · 18 years ago
  51. 78716a9 don't allow to specify protocol of IPv6 extension header (Yasuyuki Kozakai) by Yasuyuki KOZAKAI · 18 years ago
  52. a258ad7 Multiple matches of the same type can be specified on the commandline. by Joszef Kadlecsik · 18 years ago
  53. cbe1ec7 Make '-p all' a special case that is handled before calling getprotoent() (Closes: #446) by Harald Welte · 19 years ago
  54. d6bc608 fix double-free if a single match is used multiple times within a signle rule by Harald Welte · 19 years ago
  55. 0fbc862 don't install libiptc.a by Harald Welte · 19 years ago
  56. 6f38a30 fix segfault or loading of invalid counters in ip[6]tables-restore (Olaf Rempel) (Closes: #437) by Harald Welte · 19 years ago
  57. d3476b2 make policy match compile independant of kernel headers by Harald Welte · 19 years ago
  58. 54c603a Some !%$!*##$@ has modified the kernel include/linux/netfilter_ipv4/ipt_sctp.h by Harald Welte · 19 years ago
  59. 11e4718 fix ipt_conntrack compilation against very early (2.4.0) kernel releases by Harald Welte · 19 years ago
  60. 38315b1 remove other bits of old ip pool code, people should use ipset (ipset.netfilter.org) these days by Harald Welte · 19 years ago
  61. 26441e7 remove ippool by Harald Welte · 19 years ago
  62. 02e88f2 Prepare policy match for x_tables unification by making sure both by Patrick McHardy · 19 years ago
  63. 0829a2b fix 'save' (Michael Rash) by Michael Rash · 19 years ago
  64. 28e5b79 major manpage update (Yasuyuki Kozakai) by Yasuyuki KOZAKAI · 19 years ago
  65. 469d18f Add 'copy+paste' support for 'state' and 'connmark' match, as well as by Harald Welte · 19 years ago
  66. 4b1be69 add note about deprecated state by Harald Welte · 19 years ago
  67. 599d2a1 fix spelling 'adress' -> 'address' (Closes: #431) (MJ Anthony) by Harald Welte · 19 years ago
  68. 3f34756 Fix "empty policy element" complaining in non-strict mode. by Noticed by Tom Eastep · 19 years ago
  69. 37b7c9b Clarify --tunnel-src/--tunnel-dst options by Patrick McHardy · 19 years ago
  70. a46d88d Move empty policy element check to also catch last element by Patrick McHardy · 19 years ago
  71. 1d0f57c Don't allow using --next option without specifying a policy element by Patrick McHardy · 19 years ago
  72. cddae3d Fix invalid assignment of tunnel-src to dest address (Patrick McHardy) by Patrick McHardy · 19 years ago
  73. 014a48f Add documentation for string match (Pablo Neira) by Pablo Neira · 19 years ago
  74. f5b86e6 Fix probing for supported revisions (Jones Desougi <jones@ingate.com>) by Jones Desougi · 19 years ago
  75. 402c311 fix iptables-save of 'goto' target (Closes: #410) by Harald Welte · 19 years ago
  76. dbbcf27 Add note that TCPMSS is only valid in the mangle table (not true today, but maybe someday) by Patrick McHardy · 19 years ago
  77. 72bd87e fix compilation of iptables on [old] systems that don't have IPT_F_GOTO by Harald Welte · 19 years ago
  78. 3a02693 note that we can only delete chains that are empty by Harald Welte · 19 years ago
  79. 11b8591 tcp-rst is the alias, not tcp-reset (Torsten Hilbrich) by Harald Welte · 19 years ago
  80. 524bb80 Add policy match extensions from patch-o-matic by Patrick McHardy · 19 years ago
  81. 2739cb8 Fix some gcc-4 warnings by Patrick McHardy · 19 years ago
  82. 6656e13 Don't eat numeric arguments for other extensions by Patrick McHardy · 19 years ago
  83. 5a4892b The conntrack match does not print any info for --ctproto, thus by Phil Oester · 19 years ago
  84. 0b90564 only set revisions on real targets, not on jumps. (Pablo Neira) by Pablo Neira · 19 years ago
  85. d6ba6f5 - Fix memory leak in TC_COMMIT() (Markus Sundberg) by Harald Welte · 19 years ago
  86. 17fc163 add 'goto' support (Henrik Nordstrom <hno@marasystems.com>) by Henrik Nordstrom · 19 years ago
  87. 361bac2 fix connmark, it's now only 32bits (Deti Fliegl <deti@fliegl.de) by Deti Fliegl · 19 years ago
  88. 8502747 about to release 1.3.4 by Harald Welte · 19 years ago
  89. 55548fd The conntrack match extension doesn't handle address inversion correctly. (Tom Eastep) by Tom Eastep · 19 years ago
  90. 8cf6591 Kernels higher than 2.6.10 don't support multiple --to arguments in by Phil Oester · 19 years ago
  91. 3643aca * specifying random seed for the Jenkins hash works as documented by KOVACS Krisztian · 19 years ago
  92. 3ef4c8f Add the aligned_u64 typedef, it's defined in linux/types.h in the kernel. by Martin Josefsson · 19 years ago
  93. ae65b52 Make libipt_connbytes.c compile with the ipt_connbytes version that has been merged into the 2.6 kernel by Martin Josefsson · 19 years ago
  94. a4749bc Update manpage to reflect missing ability to SNAT to multiple ranges in 2.6.11-rc1 and later by Harald Welte · 19 years ago
  95. d2baafe Update manpage to reflect missing NAT to multiple ranges support in 2.6.11-rc1 and later. by Harald Welte · 19 years ago
  96. c6fbf41 update string match to reflect new kernel implementation (Pablo Neira) by Pablo Neira · 19 years ago
  97. 9cfc9b9 Note which kernel versions are affected by REJECT change (Maciej Soltysiak) by Maciej Soltysiak · 19 years ago
  98. e40b11d add support for new 'dccp' protocol match by Harald Welte · 19 years ago
  99. ae87b8a port Eric Leblond's NFQUEUE missing-break fix to ip6tables by Harald Welte · 19 years ago
  100. 6fdefcf Add missing 'break' to make parsing of NFQUEUE numbers work (Eric Leblond) by Eric Leblond · 19 years ago