Arne Fitzenreiter
08b3b6edc3
Merge branch 'master' of ssh://git.ipfire.org/pub/git/ipfire-2.x
2014-05-01 11:30:48 +02:00
Arne Fitzenreiter
9332050e37
kernel: rootfile update.
2014-05-01 11:30:07 +02:00
Michael Tremer
abe7ef8936
Merge remote-tracking branch 'ms/stunnel-addon'
2014-04-30 15:02:51 +02:00
Arne Fitzenreiter
6be2813368
fcron: fix /var/spool/cron permissions.
2014-04-30 10:57:14 +02:00
Arne Fitzenreiter
525e7a3e15
kernel: update rpi-patchset to 1b49b45.
2014-04-29 22:47:20 +02:00
Michael Tremer
f9538c3562
pound: Update to 2.7c.
...
Also fix multiple initscript symlinks.
2014-04-29 14:37:34 +02:00
Alexander Marx
a43c9b6a64
Firewall: outgoingconverter fix for ipfire-src
2014-04-28 14:27:54 +02:00
Michael Tremer
126507e5cf
watchdog: Update addon.
2014-04-27 19:37:42 +02:00
Michael Tremer
55f14706fb
kernel: Enable various watchdog modules on i586.
2014-04-26 13:22:49 +02:00
Michael Tremer
d2d7a46b1e
stunnel: New package.
2014-04-25 12:42:52 +02:00
Alexander Marx
7490b22e9d
Firewall: BUG 10528 - allow subnets greater than /8
2014-04-23 15:08:47 +02:00
Michael Tremer
d1b0815ff7
strongswan: Enable XAUTH noauth plugin.
...
See #10468 .
2014-04-22 17:46:32 +02:00
Michael Tremer
c80303cd45
Merge remote-tracking branch 'ms/modem-status' into next
...
Conflicts:
doc/language_issues.es
doc/language_issues.fr
doc/language_issues.nl
doc/language_issues.pl
doc/language_issues.ru
doc/language_issues.tr
doc/language_missings
2014-04-21 14:02:17 +02:00
Michael Tremer
ff7cb6d60f
firewall: Fix accessing port forwardings from internal networks.
...
When a different "external port" was used, false rules have
been created in the mangle table.
2014-04-20 18:13:35 +02:00
Michael Tremer
c5e3d520e9
Add modem status page.
...
On this page, much useful information is displayed about
the hardware and the status of an LTE/3G or other kinds
of modems that respond to AT commands.
2014-04-16 16:05:12 +02:00
Arne Fitzenreiter
4fbf276cae
strongswan: rootfile update.
2014-04-16 06:52:01 +02:00
Arne Fitzenreiter
2751238e6f
move core75 files to oldcore.
2014-04-16 01:54:14 +02:00
Michael Tremer
b18b011b84
Rename IPFire 2.15 Core Update 76 -> 77.
2014-04-15 21:38:24 +02:00
Michael Tremer
1d3c37402c
Merge remote-tracking branch 'ummeegge/openvpn' into next
2014-04-13 15:45:44 +02:00
Erik Kapfer
c2b5d12b34
OpenVPN:Add HMAC, cipher 'n2n' and DH key selection. Fixes and new design.
...
Added HMAC algorithm selection menu for N2N and RW.
Added cipher selection menu for N2N connections.
Added DH key selection also for existing installations incl. DH key upload possibility.
Adjusted the ovpn main WUI design to IPSec WUI.
Extend key lenght for CA, cert and control channel with faktor 2.
Some code and typo cleanup.
Bugfixes for #10317 , #10149 , #10462 , #10463
V.2 New changes:
Integrated changes in langs and ovpnmain.cgi until 20.03.2014 2.15-Beta3.
ovpn.cnf have now default bits of 2048 instead of 1024.
ovpn.cnf default_md works now with sha256 instead of md5.
Bugfix: By new installation the auth directive for RWs is faded out #10462 Comment 15.
Added error message if the crl should be displayed but no crl is present.
2014-04-13 07:14:25 +02:00
Michael Tremer
cc81c43053
firewall: Fix spelling and seperate spelling issues.
2014-04-12 16:01:11 +02:00
Michael Tremer
766c2f601d
rules.pl: Rewrite P2P protocol filter.
2014-04-12 15:40:14 +02:00
Michael Tremer
aa5f4b6568
firewall: Fix creation of automatic rules for the firewall.
...
If the firewall is part of a local network (e.g. GREEN),
we automatically add rules that grant/forbid access for the firewall,
too.
This has been broken for various default policies other than ALLOWED.
2014-04-12 15:16:08 +02:00
Michael Tremer
b04a34188c
Merge branch 'master' into next
...
Conflicts:
doc/language_issues.tr
2014-04-11 15:18:50 +02:00
Arne Fitzenreiter
0cd7c451dd
kernel: disable intel mei.
...
Intel Management Engine Interface is still crashing the kernel.
2014-04-09 18:20:46 +02:00
Michael Tremer
b8ec7b86ac
firewall-policy: Remove empty line.
2014-04-09 15:14:25 +02:00
Michael Tremer
fcc68a4277
firewall: Fix rule generation for protocols without ports.
2014-04-09 14:06:32 +02:00
Arne Fitzenreiter
1e7a2feaeb
glibc: rootfile update (arm).
2014-04-07 00:35:31 +02:00
Arne Fitzenreiter
b3c0ff6239
kernel-header: rootfile update.
2014-04-06 23:34:32 +02:00
Michael Tremer
888911ed57
core76: Include changed /etc/sysctl.conf in update.
2014-04-06 12:53:30 +02:00
Arne Fitzenreiter
68561214b3
glibc: fix image, updater and filecount in installer.
...
switch from locale-archive to normale locales add est. 5000 files.
todo: arm-rootfile.
2014-04-06 10:29:27 +02:00
Michael Tremer
085a20ec8b
firewall: Fix using aliases.
...
Fix coding errors, actually read aliases configuration
and fall back to default RED IP address if no suitable
alias was found.
2014-04-05 17:09:56 +02:00
Michael Tremer
1d9c1c3079
convert-portfw: Fix converting aliases.
...
ALL is not suitable as it is not a valid configuration value.
2014-04-05 17:08:17 +02:00
Arne Fitzenreiter
c926c6375d
firewall: fix green only mode.
...
disable masquerade and green IP/NET check if internet is
connected via green.
2014-04-05 11:04:25 +02:00
Arne Fitzenreiter
fee04791f4
apache2: update to 2.2.27.
2014-04-04 21:17:08 +02:00
Michael Tremer
025741919a
firewall: Fix perl coding error.
...
Example:
my @as = (1, 2, 3);
foreach my $a (@as) {
$a += 1;
print "$a\n";
}
$a will be a reference to the number in the array and not
copied. Therefore $a += 1 will change the numbers in the
array as well, so that after the loop the content of @as
would be (2, 3, 4).
To avoid that, the number needs to be copied into a new
variable like: my $b = $a; and we are fine.
This caused that the content of the @sources and @destinations
array has been altered for the second run of the loop and
incorrect (i.e. no) rules were created.
2014-03-31 13:16:26 +02:00
Michael Tremer
c26a9ed25c
firewall-policy: Clarify policy rules.
...
There are no functional changes here. Everything that
is not explicitely allowed is now forbidden when the
forward policy is "ALLOWED".
2014-03-30 22:33:58 +02:00
Michael Tremer
ae6ae33f84
Merge branch 'beyond-next' into next
2014-03-30 00:21:33 +01:00
Arne Fitzenreiter
8089b78d9d
firewall-policy: fix drop and logging on red0;
2014-03-29 15:06:35 +01:00
Michael Tremer
70c926e75b
firewall: Create mangle chain NAT_DESTINATION to silence error messages when updating.
2014-03-27 15:08:17 +01:00
Alexander Marx
a3f2459f8f
Firewall: fix Update from core 75 to 76
2014-03-27 15:07:41 +01:00
Michael Tremer
38ca33d110
cups: Fix rootfile.
...
Basically, include just everything.
2014-03-27 11:36:12 +01:00
Michael Tremer
41dfa08d2a
Merge branch 'ppp-update' into beyond-next
2014-03-26 23:43:04 +01:00
Michael Tremer
5240f73d9c
Merge branch 'next' of ssh://git.ipfire.org/pub/git/ipfire-2.x into beyond-next
2014-03-26 23:42:57 +01:00
Michael Tremer
93b36c3e22
ppp: Update to 2.4.6.
2014-03-26 23:42:05 +01:00
Arne Fitzenreiter
af433268e0
graphs.pl: fix links position in chrome for android.
2014-03-23 17:39:47 +01:00
Michael Tremer
6bd4bcdaa1
squid: Update to 3.4.4.
2014-03-21 13:46:03 +01:00
Michael Tremer
51cf3f8be5
firewall: rules.pl: Honour time constraints for NAT rules as well.
2014-03-21 13:39:03 +01:00
Michael Tremer
f98bb538e5
firewall: rules.pl: Catch invalid configurations.
2014-03-21 13:33:08 +01:00
Michael Tremer
c0ce920610
firewall: rules.pl: Allow REDIRECT rules.
2014-03-21 13:28:00 +01:00