Michael Tremer
9e244b246b
Merge branch 'master' of ssh://git.ipfire.org/pub/git/ipfire-2.x
2014-04-27 19:38:05 +02:00
Michael Tremer
126507e5cf
watchdog: Update addon.
2014-04-27 19:37:42 +02:00
Arne Fitzenreiter
ac28974f04
kernel: update to 3.10.38.
2014-04-27 11:37:14 +02:00
Arne Fitzenreiter
bf3662157a
mc: update to 4.8.12.
2014-04-26 22:00:25 +02:00
Michael Tremer
55f14706fb
kernel: Enable various watchdog modules on i586.
2014-04-26 13:22:49 +02:00
Michael Tremer
d2d7a46b1e
stunnel: New package.
2014-04-25 12:42:52 +02:00
Arne Fitzenreiter
89f0807ff9
kernel: rt2800usb: add dlink dwa-137 usbid.
2014-04-25 10:34:07 +02:00
Alexander Marx
7490b22e9d
Firewall: BUG 10528 - allow subnets greater than /8
2014-04-23 15:08:47 +02:00
Michael Tremer
bb8895e259
Add locales to installed.
...
Because of the locale switch, no locales have been included
in the installer initrd and no characters other than the
ASCII characters could be shown.
2014-04-22 21:09:03 +02:00
Ersan Yildirim Ersan
0327e69412
Update Turkish translation.
2014-04-22 18:00:30 +02:00
Michael Tremer
d1b0815ff7
strongswan: Enable XAUTH noauth plugin.
...
See #10468 .
2014-04-22 17:46:32 +02:00
Alexander Marx
2ed8330ee5
Firewall: BUG 10526 (missing RED iface in SNAT Dropdown)
2014-04-22 12:35:39 +02:00
Michael Tremer
c80303cd45
Merge remote-tracking branch 'ms/modem-status' into next
...
Conflicts:
doc/language_issues.es
doc/language_issues.fr
doc/language_issues.nl
doc/language_issues.pl
doc/language_issues.ru
doc/language_issues.tr
doc/language_missings
2014-04-21 14:02:17 +02:00
Michael Tremer
ff7cb6d60f
firewall: Fix accessing port forwardings from internal networks.
...
When a different "external port" was used, false rules have
been created in the mangle table.
2014-04-20 18:13:35 +02:00
Michael Tremer
c3a86f4d20
Update layer7 patch.
...
This should fix some issues with concurrent access to skbuf.
2014-04-18 23:11:39 +02:00
Michael Tremer
8d2fe8cedd
Merge branch 'master' of ssh://git.ipfire.org/pub/git/ipfire-2.x
2014-04-18 22:24:24 +02:00
Michael Tremer
39e96de566
Fix spelling of "IPsec".
2014-04-17 12:44:18 +02:00
Michael Tremer
96c1f6dea4
Update translations.
2014-04-17 12:40:04 +02:00
Alexander Marx
bc595f0985
Firewall: Bug10513
2014-04-17 12:38:59 +02:00
Michael Tremer
8490e49618
firewall: Explicitely allow DHCP messages.
2014-04-17 12:31:27 +02:00
Michael Tremer
c5e3d520e9
Add modem status page.
...
On this page, much useful information is displayed about
the hardware and the status of an LTE/3G or other kinds
of modems that respond to AT commands.
2014-04-16 16:05:12 +02:00
Arne Fitzenreiter
4fbf276cae
strongswan: rootfile update.
2014-04-16 06:52:01 +02:00
Arne Fitzenreiter
2751238e6f
move core75 files to oldcore.
2014-04-16 01:54:14 +02:00
Michael Tremer
b18b011b84
Rename IPFire 2.15 Core Update 76 -> 77.
2014-04-15 21:38:24 +02:00
Michael Tremer
fab1f85783
strongswan: Update to 5.1.3.
...
Fixes CVE-2014-2338.
2014-04-15 21:16:14 +02:00
Alexander Marx
eae92b2baf
Firewall: Bug 10514 fixed
2014-04-14 23:16:59 +02:00
Arne Fitzenreiter
a78d662c7a
kernel: update to 3.10.37.
2014-04-14 20:13:14 +02:00
Michael Tremer
1d3c37402c
Merge remote-tracking branch 'ummeegge/openvpn' into next
2014-04-13 15:45:44 +02:00
Erik Kapfer
c2b5d12b34
OpenVPN:Add HMAC, cipher 'n2n' and DH key selection. Fixes and new design.
...
Added HMAC algorithm selection menu for N2N and RW.
Added cipher selection menu for N2N connections.
Added DH key selection also for existing installations incl. DH key upload possibility.
Adjusted the ovpn main WUI design to IPSec WUI.
Extend key lenght for CA, cert and control channel with faktor 2.
Some code and typo cleanup.
Bugfixes for #10317 , #10149 , #10462 , #10463
V.2 New changes:
Integrated changes in langs and ovpnmain.cgi until 20.03.2014 2.15-Beta3.
ovpn.cnf have now default bits of 2048 instead of 1024.
ovpn.cnf default_md works now with sha256 instead of md5.
Bugfix: By new installation the auth directive for RWs is faded out #10462 Comment 15.
Added error message if the crl should be displayed but no crl is present.
2014-04-13 07:14:25 +02:00
Michael Tremer
d22294fa7e
firewall: Fix outgoing OpenVPN N2N tunnel packets.
...
Don't throw away packets from the firewall that pass through
an OpenVPN N2N tunnel.
2014-04-12 16:17:20 +02:00
Michael Tremer
cc81c43053
firewall: Fix spelling and seperate spelling issues.
2014-04-12 16:01:11 +02:00
Michael Tremer
2dd3aa93f4
firewall: Change headlines for rule sections.
2014-04-12 15:55:44 +02:00
Michael Tremer
766c2f601d
rules.pl: Rewrite P2P protocol filter.
2014-04-12 15:40:14 +02:00
Michael Tremer
28e003e486
firewall.cgi: Sort protocols alphabetically.
2014-04-12 15:23:45 +02:00
Michael Tremer
aa5f4b6568
firewall: Fix creation of automatic rules for the firewall.
...
If the firewall is part of a local network (e.g. GREEN),
we automatically add rules that grant/forbid access for the firewall,
too.
This has been broken for various default policies other than ALLOWED.
2014-04-12 15:16:08 +02:00
Michael Tremer
dd73ef846e
media.cgi: Add missing 'tr'.
2014-04-12 12:18:57 +02:00
Michael Tremer
b04a34188c
Merge branch 'master' into next
...
Conflicts:
doc/language_issues.tr
2014-04-11 15:18:50 +02:00
Michael Tremer
21674d364b
Update translations.
2014-04-11 15:17:21 +02:00
Michael Tremer
883aa361b0
Merge remote-tracking branch 'amarx/RC2-master'
2014-04-11 15:17:08 +02:00
Alexander Marx
0626fac1ac
Firewall: When having rules with more than 3 protocols, show "many" and tooltip
2014-04-11 12:07:41 +02:00
Arne Fitzenreiter
9fa2794f08
kernel: disable intel mei.
...
Intel Management Engine Interface is still crashing the kernel.
2014-04-11 12:07:41 +02:00
Alexander Marx
712500d0dc
Firewall: Fix 10510 - Show all protocols from servicegroups (GRE,IPIP,IPV6,...)
2014-04-10 08:19:56 +02:00
Arne Fitzenreiter
0cd7c451dd
kernel: disable intel mei.
...
Intel Management Engine Interface is still crashing the kernel.
2014-04-09 18:20:46 +02:00
Michael Tremer
b8ec7b86ac
firewall-policy: Remove empty line.
2014-04-09 15:14:25 +02:00
Michael Tremer
62ff8d9627
Fix missing Connection Scheduler strings.
2014-04-09 15:11:41 +02:00
Michael Tremer
48fde0b6f9
aliases.cgi: Mark name field as mandatory.
2014-04-09 14:19:16 +02:00
Michael Tremer
99f11a16f6
firewall: Apply destination NAT rules for the firewall itself, too.
2014-04-09 14:16:32 +02:00
Michael Tremer
fcc68a4277
firewall: Fix rule generation for protocols without ports.
2014-04-09 14:06:32 +02:00
Arne Fitzenreiter
b1f11b0402
openssl: update to 1.0.1g.
...
Fix for CVE-2014-0160
Add TLS padding extension workaround for broken servers.
Fix for CVE-2014-0076
2014-04-07 21:33:34 +02:00
Alexander Marx
1ccfb89eab
Firewall: fix coloring of internet hosts
2014-04-07 16:53:01 +02:00