Commit Graph

6884 Commits

Author SHA1 Message Date
Alexander Marx
a8ec686f17 Merge branch 'fifteen' of ssh://git.ipfire.org/pub/git/ipfire-2.x into firewall-fifteen1 2013-12-09 09:29:50 +01:00
Arne Fitzenreiter
3a3759c625 mountkernfs: fix mount of /sys and /proc without initrd. 2013-12-08 16:07:35 +01:00
Arne Fitzenreiter
8a2cf24a1f kernel: enable grsecurity on rpi kernel. 2013-12-08 16:03:25 +01:00
Alexander Marx
82b837cff8 Firewall: Added new feature: Now protocols can be added to servicegroups (GRE,AH,ESP,IPIP,IPV6) 2013-12-06 08:47:11 +01:00
Arne Fitzenreiter
342a91ae25 kernel: update to 3.10.22. 2013-12-05 19:46:25 +01:00
Alexander Marx
784098e4db Firewall: forgot to delete a development test string 2013-12-05 15:51:15 +01:00
Alexander Marx
0c733ab750 Firewall: Bugfix: Fixed wrong language strings in outgoing FW rules when using std networks or ipfire 2013-12-05 15:16:19 +01:00
Alexander Marx
2be048cedc Firewall: FIxed wrong language strings in outgoing Firewall 2013-12-05 15:16:02 +01:00
Alexander Marx
02cb636c8b Firewall: Fixes commit http://git.ipfire.org/?p=people/amarx/ipfire-2.x.git;a=commitdiff;h=e19a36c4a09ea417ce9d577c262f17242eec4a31
Now all "active" Strings from all languagefiles are checked against the old rule to find out if logging is enabled

Conflicts:
	config/firewall/convert-outgoingfw
2013-12-05 15:15:37 +01:00
Alexander Marx
5558ca2a96 Firewall: fixes commit http://git.ipfire.org/?p=people/amarx/ipfire-2.x.git;a=commitdiff;h=1ed4b214d785ad0538b0a864f43babccd55475b1
Conflicts:
	html/cgi-bin/firewall.cgi
2013-12-05 15:12:37 +01:00
Alexander Marx
cdb3536bc8 Firewall: BUGFIX: RUles.pl did not create LOGGING rules properly. 2013-12-05 14:48:59 +01:00
Arne Fitzenreiter
09efb767f4 Merge branch 'fifteen' of ssh://git.ipfire.org/pub/git/ipfire-2.x into fifteen 2013-12-01 14:09:02 +01:00
Arne Fitzenreiter
ea04338b4d rootfile fixes for arm. 2013-12-01 14:08:08 +01:00
Arne Fitzenreiter
0037264780 Merge branch 'next' into fifteen
Conflicts:
	doc/language_issues.tr
2013-11-30 12:45:31 +01:00
Arne Fitzenreiter
532b997c65 Merge branch 'master' into next 2013-11-30 12:39:33 +01:00
Arne Fitzenreiter
352495313d samba: update to 3.6.21. 2013-11-30 12:38:16 +01:00
Arne Fitzenreiter
e99dcbdbab kernel: update to 3.10.21. 2013-11-29 23:37:39 +01:00
Michael Tremer
78c2b230d4 squid: Apply patch for properly detect rlimit.
https://bugzilla.ipfire.org/show_bug.cgi?id=10445
2013-11-26 11:43:11 +01:00
Michael Tremer
4f160f04cb proxy: Set number of file descriptors much higher.
Some users are hitting the 65k limit regularly, so
we set the limit to a much higher number.
2013-11-21 21:36:02 +01:00
Alexander Marx
35ca8e0203 Firewall: Bugfix: Last rule for outgoing showed wrong color, Bugfix:When using a rule with sourceport and afterwards editing this rule to use service or servicegroup, there was an errormessage. 2013-11-21 21:09:22 +01:00
Alexander Marx
27d4d4817e Firewall: refined dmz-converter. RUles are now converted with defined protocol instead of "all" protocol 2013-11-21 21:08:36 +01:00
Alexander Marx
a8ccb45cb7 Firewall: Fixed xtaccess converter. The protocol in the old rules are now converted correctly 2013-11-21 21:08:24 +01:00
Arne Fitzenreiter
44ed2a42f0 linux-pae: rebuild module deps before initrd build. 2013-11-21 14:14:41 +01:00
Arne Fitzenreiter
504fc5af26 rootfile updates. 2013-11-21 13:50:03 +01:00
Arne Fitzenreiter
385394fefa kernel: update to 3.10.20. 2013-11-21 13:49:15 +01:00
Arne Fitzenreiter
1350598261 remove old openssh updater rootfile. 2013-11-21 08:10:21 +01:00
Arne Fitzenreiter
d30819033d usbutils: update to 007. 2013-11-21 00:01:21 +01:00
Erik Kapfer
1e6ce289bd openvpn: Update to version 2.3.2
Fixes #10440
2013-11-20 21:53:29 +01:00
Michael Tremer
0fc392d65d Merge branch 'master' into fifteen 2013-11-20 21:43:20 +01:00
Michael Tremer
8cb142e76d Merge branch 'master' into next 2013-11-20 21:43:02 +01:00
Michael Tremer
303b81f19c Add openssh update to core update 73. 2013-11-20 21:41:42 +01:00
Arne Fitzenreiter
5702b0cee5 install: create /var/run folder on rootfs. 2013-11-20 17:15:31 +01:00
Arne Fitzenreiter
a5d81233a3 setup: change persistent network rules for new udev. 2013-11-20 07:37:51 +01:00
Arne Fitzenreiter
147446202f udev: disable new netdev names and systemd log prefix. 2013-11-20 07:37:01 +01:00
Arne Fitzenreiter
80469a8935 initskripts: updates for new udev. 2013-11-18 23:36:10 +01:00
Arne Fitzenreiter
b474c1ca15 stage2: add /run symlink to /var/run. 2013-11-18 23:34:00 +01:00
Arne Fitzenreiter
5c3fa3223a dracut: fixes for new udev and missing scsi_wait. 2013-11-18 23:30:27 +01:00
Arne Fitzenreiter
35e188494d udev: update to 208. 2013-11-18 23:27:37 +01:00
Arne Fitzenreiter
ba109afd0d kmod: replace module-init-tools by kmod-13.
newer udev depend on kmod.
2013-11-18 19:00:51 +01:00
Ersan Yildirim
e2fedc9a47 Updates for Turkish translation. 2013-11-18 11:39:51 +01:00
Arne Fitzenreiter
1ee33ddadf util-linux: update to 2.24.
this is needed for newer udev versions but need some initskript
changes. The updater and arm rootfile is not finished yet.
2013-11-17 18:51:04 +01:00
Alexander Marx
6ee9053548 Firewall: Fixed portfw-converter (rules where not converted correctly) And Standard network "IPsec RW" now has brackets around the Ip (when set) 2013-11-14 11:44:11 +01:00
Michael Tremer
1187d46e65 Merge branch 'fifteen' of ssh://git.ipfire.org/pub/git/ipfire-2.x into fifteen 2013-11-14 11:41:18 +01:00
Michael Tremer
9659f59a86 configroot: Fix recursively including /var/ipfire/backup.
This issue has been introduced in a72fac88.
2013-11-14 11:40:36 +01:00
Arne Fitzenreiter
6f0fd5e178 kernel: update to 3.10.19. 2013-11-13 14:05:27 +01:00
Arne Fitzenreiter
d0d3fe9d26 Merge remote-tracking branch 'origin/next' into fifteen
Conflicts:
	lfs/samba
	lfs/strongswan
2013-11-13 14:05:15 +01:00
Arne Fitzenreiter
d48c456fa2 samba: update to 3.6.20.
These are security releases in order to address CVE-2013-4475
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4475
(ACLs are not checked on opening an alternate data stream on
a file or directory) and CVE-2013-4476
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4476
(Private key in key.pem world readable).
2013-11-13 13:56:40 +01:00
Arne Fitzenreiter
1a386bb9d8 samba: update to 3.6.20.
These are security releases in order to address CVE-2013-4475
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4475
(ACLs are not checked on opening an alternate data stream on
a file or directory) and CVE-2013-4476
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4476
(Private key in key.pem world readable).
2013-11-13 13:39:35 +01:00
Alexander Marx
7d3b1f7eaf Firewall: new errormessage for maximum number of ports in servicegroups 2013-11-13 00:36:43 +01:00
Alexander Marx
7db6ad6acb Firewall: appended check of maximum ports per protocol. portranges 100:200 count as 2 ports 2013-11-13 00:34:08 +01:00