Commit Graph

1161 Commits

Author SHA1 Message Date
Alexander Marx
7db6ad6acb Firewall: appended check of maximum ports per protocol. portranges 100:200 count as 2 ports 2013-11-13 00:34:08 +01:00
Alexander Marx
49192c7b31 Firewall: The maximum of definable services in a servicegroup is limited to 13 per protocol (tcp,udp) because iptables can only handle max 13 services in Multiport 2013-11-13 00:33:46 +01:00
Alexander Marx
a15f7d0dd5 Firewall: Bugfix: the routine to check if a vpn net or host was deleted did not work as expected. Now it even works when source and target contain a vpn host or net 2013-11-13 00:29:44 +01:00
Alexander Marx
d8afe3e2c0 Firewall: fixed colors of target column when using standard networks
When using RED, OpenVPN-Dyn or IPsec RW as target, the column was not
colored.
2013-11-13 00:29:21 +01:00
Alexander Marx
f8cbcb7c8a Firewall: Bugfix: When creating a servcie in firewall-groups and selecting a protocol other than icmp, the enty in the ruletable shows correct values PLUS the "all icmp-types" under ICMP.
Now the ICMP FIeld is emtpy when selecting another protocol than icmp
2013-11-08 13:41:06 +01:00
Alexander Marx
7b82bee7c4 Firewall: Bugfix: When creating a rule and using brackets in comment, the rule is denied because of invalid characters in String. But when creating a rule with just valid characters (witjout brackets) and then editing the rule it is possible to use brackets without errormessage.
Now brackets are allowed.
2013-11-08 13:40:45 +01:00
Michael Tremer
cb92b363cf Merge remote-tracking branch 'amarx/firewall-fifteen' into fifteen 2013-10-31 15:35:34 +01:00
Michael Tremer
12b901f846 firewall: Fix wrong symbol for variable. 2013-10-31 15:34:40 +01:00
Alexander Marx
11ab2c7d9a Firewall: added IP-Address to dropdown in DNAT part and now all ip-addresses are in brackets 2013-10-30 15:49:21 +01:00
Alexander Marx
68f6312ac5 Firewall: Show IP-Adresses in NAT-Source dropdown 2013-10-30 13:41:33 +01:00
Michael Tremer
c03d4a5e8a firewall: Simplify code which shows the last rule.
Also change headings of the rule sections.
2013-10-29 18:45:40 +01:00
Michael Tremer
bee56a2d5d firewall: NAT section: Don't show irrelevant controls. 2013-10-29 16:57:58 +01:00
Michael Tremer
2a6e9ae967 Merge remote-tracking branch 'amarx/firewall-fifteen' into fifteen 2013-10-29 16:23:35 +01:00
Michael Tremer
e9a0562345 P2P block: Add notice that the user will reload the firewall ruleset. 2013-10-29 16:22:13 +01:00
Alexander Marx
daf400fa4d Firewall: fixed untranslated Strings 2013-10-29 08:34:42 +01:00
Michael Tremer
85860aff26 firewall: Fix rendering issue of the rule table. 2013-10-28 20:35:36 +01:00
Michael Tremer
901aa8b943 firewall: Fix layout of protocol selection. 2013-10-25 11:40:06 +02:00
Alexander Marx
39e360b26c Firewall: added missing translation for short IPv6 protcol in ruletable 2013-10-24 16:24:45 +02:00
Alexander Marx
9c89c64de1 Firewall: rename Protocol 41 in Dropdown and ruletable ->Now "IPv6 Encapsulation (protocol 41)" in dropdown and "IPv6 Encap" in ruletable 2013-10-24 16:04:26 +02:00
Alexander Marx
8039a71099 Firewall: renamed forwardfwctrl to firewallctrl 2013-10-24 09:42:42 +02:00
Alexander Marx
6d8eb5dec7 Firewall: Renamed directory /var/ipfire/forward to /var/ipfire/firewall 2013-10-24 09:24:12 +02:00
Alexander Marx
11760a7075 Firewall: Added protocols IPv6 (41) and IPIP (94) 2013-10-24 07:59:42 +02:00
Alexander Marx
b161bfa868 FIREWALL: renamed forwardfw.cgi in firewall.cgi 2013-10-23 16:32:26 +02:00
Alexander Marx
8cdfbf5aeb Firewall: Make it possible to use NAT without Ports specified 2013-10-23 16:30:17 +02:00
Michael Tremer
989d0fd717 firewall: Straighten the format of the rule table.
Lots of markup and code cleanup.
2013-10-22 20:21:33 +02:00
Michael Tremer
4a75efa5a7 p2p-block.cgi: Fix coding style. 2013-10-22 19:08:35 +02:00
Michael Tremer
0e43079789 firewall: Cleanup rules reloading.
This has been messed up a lot because there were multiple
files which indicated that a reload is needed; shell commands
were used to create and remove the indicator file; some
functions were duplicated.
2013-10-22 18:53:48 +02:00
Michael Tremer
0eadfdad4a firewall: Predefine value for checkboxes.
It turns out, that this is not good style, but as the
rest of the CGI depends on it, we need to stick with
this.
2013-10-22 17:39:56 +02:00
Michael Tremer
6bcb5ffe56 firewall: Move NAT port field to the protocol section. 2013-10-22 17:23:23 +02:00
Michael Tremer
93e0855b6f firewall: Fix collapsing the NAT menu.
Also removing a lot of redundant HTML code and invalid
attributes.
2013-10-22 16:59:16 +02:00
Michael Tremer
85d6e8a910 firewall: Update the re-read button.
Change to a more meaningful description and remove the
big green box.
2013-10-22 16:44:43 +02:00
Michael Tremer
d8d7dd3bd8 firewall: Don't show rule activation checkbox when creating a rule.
Almost certainly, the user wants the new rule to be active when
it is created. We should put as few input elements as possible
on the rule creation page.
2013-10-17 17:58:45 +02:00
Michael Tremer
d50ef220b6 firewall: Fix invalid HTML syntax. 2013-10-17 17:39:12 +02:00
Michael Tremer
0c7d0c0883 firewall: Simplify rule action selection.
Instead of two clicks, this is now changable with only
one click. The color coding should make the decision easier
and warn to not make unwanted configurations.
2013-10-17 17:33:46 +02:00
Michael Tremer
f18c38312c firewall: Make time constraints selection collapsable. 2013-10-17 16:49:07 +02:00
Alexander Marx
c9493d6c4f Firewall: Language changes, JQuery code cleanup 2013-10-17 14:27:41 +02:00
Alexander Marx
86a921ee47 Firewall: Some changes in Strings and languagefiles 2013-10-17 11:27:48 +02:00
Alexander Marx
fda8c915d6 Firewall: Fixed JQuery code for fwhosts. This is BETA2 base 2013-10-16 14:55:20 +02:00
Alexander Marx
79bb8c75f2 Firewall: completed michaels JQuery code and some language changes. This is BETA2-base 2013-10-16 14:27:08 +02:00
Alexander Marx
769185b58e Merge branch 'fifteen' of ssh://git.ipfire.org/pub/git/ipfire-2.x into firewall-fifteen 2013-10-16 14:22:38 +02:00
Michael Tremer
a1e89f481d firewall: Simplify protocol selection.
Plausibility checks and removed checkboxed need to be made
functional again. Also proper styling is missing.
2013-10-15 21:08:38 +02:00
Alexander Marx
ec6fd189ee Firewall: Jquery with errors for michael... 2013-10-15 15:45:51 +02:00
Alexander Marx
a5cb9aca78 Firewall: Try to clean up JS code part 1 2013-10-15 12:05:13 +02:00
Michael Tremer
afe4656c72 DDNS: Sort providers alphabetically. 2013-10-15 11:50:48 +02:00
Stefan Schantl
290c9cf89b DDNS: Add support for udmedia.de.
This commit adds support for the dynamic dns service provider udmedia.de and was requested by a user on the forum.

Details can be found here: http://forum.ipfire.org/index.php?topic=9097.0

Fixes #10432.
2013-10-14 19:07:18 +02:00
Michael Tremer
568438067c Merge branch 'next' into fifteen 2013-10-14 14:12:04 +02:00
Michael Tremer
8dc177053f squid: Increase default number of file descriptors. 2013-10-14 14:07:35 +02:00
Michael Tremer
0f6b606785 squid: Implement intercept mode. 2013-10-14 13:54:24 +02:00
Alexander Marx
bfc84eb153 Firewall: added JavaScript for services (hide icmp-types when no ICMP selected) 2013-10-09 16:20:54 +02:00
Alexander Marx
3af3ecd319 Firewall: fix rules.pl when using custom hosts/networks and services no rule was applied because no protokoll could be found
Also extended JS code to correctly show ICMP Types only, if NO Targetport is selcted
2013-10-09 10:31:35 +02:00