Commit Graph

3926 Commits

Author SHA1 Message Date
Michael Tremer
661cd276b6 Merge remote-tracking branch 'ummeegge/openvpn' into next
Conflicts:
	html/cgi-bin/ovpnmain.cgi
	langs/de/cgi-bin/de.pl
	langs/en/cgi-bin/en.pl
2014-05-11 18:47:11 +02:00
Michael Tremer
b2e75449a9 Revert "OpenVPN:Add HMAC, cipher 'n2n' and DH key selection. Fixes and new design."
This reverts commit c2b5d12b34.

Conflicts:
	langs/de/cgi-bin/de.pl
	langs/en/cgi-bin/en.pl
2014-05-11 18:34:34 +02:00
Erik Kapfer
49abe7afb1 OpenVPN:Add HMAC, cipher 'n2n' and DH key selection. Fixes and new design.
Added HMAC algorithm selection menu for N2N and RW.
Added cipher selection menu for N2N connections.
Added DH key selection also for existing installations incl. DH key upload possibility.
Adjusted the ovpn main WUI design to IPSec WUI.
Extend key lenght for CA, cert and control channel with faktor 2.
Some code and typo cleanup.
Bugfixes for #10317, #10149, #10462, #10463
V.2 New changes:
Integrated changes in langs and ovpnmain.cgi until 20.03.2014 2.15-Beta3.
ovpn.cnf have now default bits of 2048 instead of 1024.
ovpn.cnf default_md works now with sha256 instead of md5.
Bugfix: By new installation the auth directive for RWs is faded out #10462 Comment 15.
Added error message if the crl should be displayed but no crl is present.
v.3 New changes #10462 Comment 20:
Updated to core version 77.
Deleted manual name award in DH key upload section, name will be given automatically now.
Added sha512WithRSAEncryption instead of sha1WithRSAEncryption for "Root Certificate".
Added tls-auth support for Roadwarriors.
Added crypto engine support for N2N and Roadwarriors.
2014-05-11 09:24:04 +02:00
Michael Tremer
03d0b8c7e8 Merge branch 'master' into next
Conflicts:
	doc/language_issues.nl
	doc/language_issues.tr
2014-05-09 01:31:43 +02:00
Arne Fitzenreiter
e8bca747d0 GeoIP: update db 06052014. 2014-05-08 16:47:17 +02:00
Arne Fitzenreiter
2dc0ff2b48 usb-modeswitch: update to 2.1.1 and db 20140327. 2014-05-08 16:37:07 +02:00
Arne Fitzenreiter
dcd8c87594 Merge branch 'master' of ssh://git.ipfire.org/pub/git/ipfire-2.x 2014-05-08 16:15:13 +02:00
Arne Fitzenreiter
74fd06be0e kernel: add Marvel uAP module (dreamplug). 2014-05-08 16:13:25 +02:00
Michael Tremer
8fc66b345a core77: Remove dialctrl.pl call from crontab. 2014-05-07 12:00:11 +02:00
Michael Tremer
1349c45777 core77: Only add timezone-transition rules when needed. 2014-05-07 11:54:53 +02:00
Arne Fitzenreiter
921023a33c xen-downloader: update script.
-new legacy kernel package.
-add console variable.
-fix file permissions.
2014-05-04 11:07:05 +02:00
Arne Fitzenreiter
59209622e3 backupiso: set version to 2.15. 2014-05-03 15:08:54 +02:00
Michael Tremer
7a3266a0a5 core77: Add changes regarding status menu to updater. 2014-05-01 20:33:18 +02:00
Arne Fitzenreiter
ca730c66a4 libsigc++: remove rtorrent dependency. 2014-05-01 14:22:54 +02:00
Arne Fitzenreiter
5934bf55d4 rtorrent: remove outdated addon. 2014-05-01 11:51:49 +02:00
Arne Fitzenreiter
675a0b7fb6 core77: add hwdata to updater. 2014-05-01 11:37:16 +02:00
Arne Fitzenreiter
08b3b6edc3 Merge branch 'master' of ssh://git.ipfire.org/pub/git/ipfire-2.x 2014-05-01 11:30:48 +02:00
Arne Fitzenreiter
9332050e37 kernel: rootfile update. 2014-05-01 11:30:07 +02:00
Michael Tremer
abe7ef8936 Merge remote-tracking branch 'ms/stunnel-addon' 2014-04-30 15:02:51 +02:00
Arne Fitzenreiter
6be2813368 fcron: fix /var/spool/cron permissions. 2014-04-30 10:57:14 +02:00
Arne Fitzenreiter
525e7a3e15 kernel: update rpi-patchset to 1b49b45. 2014-04-29 22:47:20 +02:00
Michael Tremer
f9538c3562 pound: Update to 2.7c.
Also fix multiple initscript symlinks.
2014-04-29 14:37:34 +02:00
Alexander Marx
a43c9b6a64 Firewall: outgoingconverter fix for ipfire-src 2014-04-28 14:27:54 +02:00
Michael Tremer
126507e5cf watchdog: Update addon. 2014-04-27 19:37:42 +02:00
Michael Tremer
55f14706fb kernel: Enable various watchdog modules on i586. 2014-04-26 13:22:49 +02:00
Michael Tremer
d2d7a46b1e stunnel: New package. 2014-04-25 12:42:52 +02:00
Alexander Marx
7490b22e9d Firewall: BUG 10528 - allow subnets greater than /8 2014-04-23 15:08:47 +02:00
Michael Tremer
d1b0815ff7 strongswan: Enable XAUTH noauth plugin.
See #10468.
2014-04-22 17:46:32 +02:00
Michael Tremer
c80303cd45 Merge remote-tracking branch 'ms/modem-status' into next
Conflicts:
	doc/language_issues.es
	doc/language_issues.fr
	doc/language_issues.nl
	doc/language_issues.pl
	doc/language_issues.ru
	doc/language_issues.tr
	doc/language_missings
2014-04-21 14:02:17 +02:00
Michael Tremer
ff7cb6d60f firewall: Fix accessing port forwardings from internal networks.
When a different "external port" was used, false rules have
been created in the mangle table.
2014-04-20 18:13:35 +02:00
Michael Tremer
c5e3d520e9 Add modem status page.
On this page, much useful information is displayed about
the hardware and the status of an LTE/3G or other kinds
of modems that respond to AT commands.
2014-04-16 16:05:12 +02:00
Arne Fitzenreiter
4fbf276cae strongswan: rootfile update. 2014-04-16 06:52:01 +02:00
Arne Fitzenreiter
2751238e6f move core75 files to oldcore. 2014-04-16 01:54:14 +02:00
Michael Tremer
b18b011b84 Rename IPFire 2.15 Core Update 76 -> 77. 2014-04-15 21:38:24 +02:00
Michael Tremer
1d3c37402c Merge remote-tracking branch 'ummeegge/openvpn' into next 2014-04-13 15:45:44 +02:00
Erik Kapfer
c2b5d12b34 OpenVPN:Add HMAC, cipher 'n2n' and DH key selection. Fixes and new design.
Added HMAC algorithm selection menu for N2N and RW.
Added cipher selection menu for N2N connections.
Added DH key selection also for existing installations incl. DH key upload possibility.
Adjusted the ovpn main WUI design to IPSec WUI.
Extend key lenght for CA, cert and control channel with faktor 2.
Some code and typo cleanup.
Bugfixes for #10317, #10149, #10462, #10463
V.2 New changes:
Integrated changes in langs and ovpnmain.cgi until 20.03.2014 2.15-Beta3.
ovpn.cnf have now default bits of 2048 instead of 1024.
ovpn.cnf default_md works now with sha256 instead of md5.
Bugfix: By new installation the auth directive for RWs is faded out #10462 Comment 15.
Added error message if the crl should be displayed but no crl is present.
2014-04-13 07:14:25 +02:00
Michael Tremer
cc81c43053 firewall: Fix spelling and seperate spelling issues. 2014-04-12 16:01:11 +02:00
Michael Tremer
766c2f601d rules.pl: Rewrite P2P protocol filter. 2014-04-12 15:40:14 +02:00
Michael Tremer
aa5f4b6568 firewall: Fix creation of automatic rules for the firewall.
If the firewall is part of a local network (e.g. GREEN),
we automatically add rules that grant/forbid access for the firewall,
too.

This has been broken for various default policies other than ALLOWED.
2014-04-12 15:16:08 +02:00
Michael Tremer
b04a34188c Merge branch 'master' into next
Conflicts:
	doc/language_issues.tr
2014-04-11 15:18:50 +02:00
Arne Fitzenreiter
0cd7c451dd kernel: disable intel mei.
Intel Management Engine Interface is still crashing the kernel.
2014-04-09 18:20:46 +02:00
Michael Tremer
b8ec7b86ac firewall-policy: Remove empty line. 2014-04-09 15:14:25 +02:00
Michael Tremer
fcc68a4277 firewall: Fix rule generation for protocols without ports. 2014-04-09 14:06:32 +02:00
Arne Fitzenreiter
1e7a2feaeb glibc: rootfile update (arm). 2014-04-07 00:35:31 +02:00
Arne Fitzenreiter
b3c0ff6239 kernel-header: rootfile update. 2014-04-06 23:34:32 +02:00
Michael Tremer
888911ed57 core76: Include changed /etc/sysctl.conf in update. 2014-04-06 12:53:30 +02:00
Arne Fitzenreiter
68561214b3 glibc: fix image, updater and filecount in installer.
switch from locale-archive to normale locales add est. 5000 files.
todo: arm-rootfile.
2014-04-06 10:29:27 +02:00
Michael Tremer
085a20ec8b firewall: Fix using aliases.
Fix coding errors, actually read aliases configuration
and fall back to default RED IP address if no suitable
alias was found.
2014-04-05 17:09:56 +02:00
Michael Tremer
1d9c1c3079 convert-portfw: Fix converting aliases.
ALL is not suitable as it is not a valid configuration value.
2014-04-05 17:08:17 +02:00
Arne Fitzenreiter
c926c6375d firewall: fix green only mode.
disable masquerade and green IP/NET check if internet is
connected via green.
2014-04-05 11:04:25 +02:00