Alexander Marx
a8ec686f17
Merge branch 'fifteen' of ssh://git.ipfire.org/pub/git/ipfire-2.x into firewall-fifteen1
2013-12-09 09:29:50 +01:00
Arne Fitzenreiter
3a3759c625
mountkernfs: fix mount of /sys and /proc without initrd.
2013-12-08 16:07:35 +01:00
Arne Fitzenreiter
8a2cf24a1f
kernel: enable grsecurity on rpi kernel.
2013-12-08 16:03:25 +01:00
Alexander Marx
82b837cff8
Firewall: Added new feature: Now protocols can be added to servicegroups (GRE,AH,ESP,IPIP,IPV6)
2013-12-06 08:47:11 +01:00
Arne Fitzenreiter
342a91ae25
kernel: update to 3.10.22.
2013-12-05 19:46:25 +01:00
Alexander Marx
784098e4db
Firewall: forgot to delete a development test string
2013-12-05 15:51:15 +01:00
Alexander Marx
0c733ab750
Firewall: Bugfix: Fixed wrong language strings in outgoing FW rules when using std networks or ipfire
2013-12-05 15:16:19 +01:00
Alexander Marx
2be048cedc
Firewall: FIxed wrong language strings in outgoing Firewall
2013-12-05 15:16:02 +01:00
Alexander Marx
02cb636c8b
Firewall: Fixes commit http://git.ipfire.org/?p=people/amarx/ipfire-2.x.git;a=commitdiff;h=e19a36c4a09ea417ce9d577c262f17242eec4a31
...
Now all "active" Strings from all languagefiles are checked against the old rule to find out if logging is enabled
Conflicts:
config/firewall/convert-outgoingfw
2013-12-05 15:15:37 +01:00
Alexander Marx
5558ca2a96
Firewall: fixes commit http://git.ipfire.org/?p=people/amarx/ipfire-2.x.git;a=commitdiff;h=1ed4b214d785ad0538b0a864f43babccd55475b1
...
Conflicts:
html/cgi-bin/firewall.cgi
2013-12-05 15:12:37 +01:00
Alexander Marx
cdb3536bc8
Firewall: BUGFIX: RUles.pl did not create LOGGING rules properly.
2013-12-05 14:48:59 +01:00
Arne Fitzenreiter
09efb767f4
Merge branch 'fifteen' of ssh://git.ipfire.org/pub/git/ipfire-2.x into fifteen
2013-12-01 14:09:02 +01:00
Arne Fitzenreiter
ea04338b4d
rootfile fixes for arm.
2013-12-01 14:08:08 +01:00
Arne Fitzenreiter
0037264780
Merge branch 'next' into fifteen
...
Conflicts:
doc/language_issues.tr
2013-11-30 12:45:31 +01:00
Arne Fitzenreiter
532b997c65
Merge branch 'master' into next
2013-11-30 12:39:33 +01:00
Arne Fitzenreiter
352495313d
samba: update to 3.6.21.
2013-11-30 12:38:16 +01:00
Arne Fitzenreiter
e99dcbdbab
kernel: update to 3.10.21.
2013-11-29 23:37:39 +01:00
Michael Tremer
78c2b230d4
squid: Apply patch for properly detect rlimit.
...
https://bugzilla.ipfire.org/show_bug.cgi?id=10445
2013-11-26 11:43:11 +01:00
Michael Tremer
4f160f04cb
proxy: Set number of file descriptors much higher.
...
Some users are hitting the 65k limit regularly, so
we set the limit to a much higher number.
2013-11-21 21:36:02 +01:00
Alexander Marx
35ca8e0203
Firewall: Bugfix: Last rule for outgoing showed wrong color, Bugfix:When using a rule with sourceport and afterwards editing this rule to use service or servicegroup, there was an errormessage.
2013-11-21 21:09:22 +01:00
Alexander Marx
27d4d4817e
Firewall: refined dmz-converter. RUles are now converted with defined protocol instead of "all" protocol
2013-11-21 21:08:36 +01:00
Alexander Marx
a8ccb45cb7
Firewall: Fixed xtaccess converter. The protocol in the old rules are now converted correctly
2013-11-21 21:08:24 +01:00
Arne Fitzenreiter
44ed2a42f0
linux-pae: rebuild module deps before initrd build.
2013-11-21 14:14:41 +01:00
Arne Fitzenreiter
504fc5af26
rootfile updates.
2013-11-21 13:50:03 +01:00
Arne Fitzenreiter
385394fefa
kernel: update to 3.10.20.
2013-11-21 13:49:15 +01:00
Arne Fitzenreiter
1350598261
remove old openssh updater rootfile.
2013-11-21 08:10:21 +01:00
Arne Fitzenreiter
d30819033d
usbutils: update to 007.
2013-11-21 00:01:21 +01:00
Erik Kapfer
1e6ce289bd
openvpn: Update to version 2.3.2
...
Fixes #10440
2013-11-20 21:53:29 +01:00
Michael Tremer
0fc392d65d
Merge branch 'master' into fifteen
2013-11-20 21:43:20 +01:00
Michael Tremer
8cb142e76d
Merge branch 'master' into next
2013-11-20 21:43:02 +01:00
Michael Tremer
303b81f19c
Add openssh update to core update 73.
2013-11-20 21:41:42 +01:00
Arne Fitzenreiter
5702b0cee5
install: create /var/run folder on rootfs.
2013-11-20 17:15:31 +01:00
Arne Fitzenreiter
a5d81233a3
setup: change persistent network rules for new udev.
2013-11-20 07:37:51 +01:00
Arne Fitzenreiter
147446202f
udev: disable new netdev names and systemd log prefix.
2013-11-20 07:37:01 +01:00
Arne Fitzenreiter
80469a8935
initskripts: updates for new udev.
2013-11-18 23:36:10 +01:00
Arne Fitzenreiter
b474c1ca15
stage2: add /run symlink to /var/run.
2013-11-18 23:34:00 +01:00
Arne Fitzenreiter
5c3fa3223a
dracut: fixes for new udev and missing scsi_wait.
2013-11-18 23:30:27 +01:00
Arne Fitzenreiter
35e188494d
udev: update to 208.
2013-11-18 23:27:37 +01:00
Arne Fitzenreiter
ba109afd0d
kmod: replace module-init-tools by kmod-13.
...
newer udev depend on kmod.
2013-11-18 19:00:51 +01:00
Ersan Yildirim
e2fedc9a47
Updates for Turkish translation.
2013-11-18 11:39:51 +01:00
Arne Fitzenreiter
1ee33ddadf
util-linux: update to 2.24.
...
this is needed for newer udev versions but need some initskript
changes. The updater and arm rootfile is not finished yet.
2013-11-17 18:51:04 +01:00
Alexander Marx
6ee9053548
Firewall: Fixed portfw-converter (rules where not converted correctly) And Standard network "IPsec RW" now has brackets around the Ip (when set)
2013-11-14 11:44:11 +01:00
Michael Tremer
1187d46e65
Merge branch 'fifteen' of ssh://git.ipfire.org/pub/git/ipfire-2.x into fifteen
2013-11-14 11:41:18 +01:00
Michael Tremer
9659f59a86
configroot: Fix recursively including /var/ipfire/backup.
...
This issue has been introduced in a72fac88 .
2013-11-14 11:40:36 +01:00
Arne Fitzenreiter
6f0fd5e178
kernel: update to 3.10.19.
2013-11-13 14:05:27 +01:00
Arne Fitzenreiter
d0d3fe9d26
Merge remote-tracking branch 'origin/next' into fifteen
...
Conflicts:
lfs/samba
lfs/strongswan
2013-11-13 14:05:15 +01:00
Arne Fitzenreiter
d48c456fa2
samba: update to 3.6.20.
...
These are security releases in order to address CVE-2013-4475
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4475
(ACLs are not checked on opening an alternate data stream on
a file or directory) and CVE-2013-4476
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4476
(Private key in key.pem world readable).
2013-11-13 13:56:40 +01:00
Arne Fitzenreiter
1a386bb9d8
samba: update to 3.6.20.
...
These are security releases in order to address CVE-2013-4475
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4475
(ACLs are not checked on opening an alternate data stream on
a file or directory) and CVE-2013-4476
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4476
(Private key in key.pem world readable).
2013-11-13 13:39:35 +01:00
Alexander Marx
7d3b1f7eaf
Firewall: new errormessage for maximum number of ports in servicegroups
2013-11-13 00:36:43 +01:00
Alexander Marx
7db6ad6acb
Firewall: appended check of maximum ports per protocol. portranges 100:200 count as 2 ports
2013-11-13 00:34:08 +01:00