|
Version 1.1.5 - some changes from the RWTH Aachen (Jens Hektor)to handle the 1.1.4 - fixed missing input-rules for ICMP. 1.1.3 - security fix: moved temporary files from /tmp/service_*.htm 1.1.2 syntax bug: Linux-Version test for ICMP-Masquerading produced syntax error 1.1.1 - Little changes for Linux 2.2. 1.1.0 - Support for IP-Masquerading (ipfwadm, ipchains) for 1.0.9.p1 - hopefully last fixes for version below 1.1. 1.0.9 - changed Installation possibilities: Install.sh [-cgi] [-strict] [userid] - save_config: option for installation of config_files! save_config -i [-cgi] <tarfile> - renamed fw-rules -> fw_rules - fixed bug in "Configuration" Mask ("finger" wasnīt sorted) - denied TRUSTED and PERIMETER IPīs on external Interface in rules/General.rules - logfile now works better with option -s - delete logfiles with start of firewall - cleanup of rcs versions - removed RCS dirs from distributet FCT package (i think you don't need this) - moved etc/default to samples 1.0.8 - added possibility for logging of services, trusted host connections - splittet extracted ipfilter-functions in separate files (these implement the syntax for different filters) Hey MIR, Version 1.0.7 is yours :-) 1.0.7 - added option -h (help) to commands firewall, fw-rules, create_rules, save_config - create_rules: added argument <service> to specify which rules are to be created (analog to fw-rules) e.g.: create_rules telnet (telnet rules) create_rules Firewall (all rules for Firewall) - removed double entries in logfile (only 1.+2. command) - URL "see logfile" now points to correct logfile log/$ip_cmd.log - added "create all rules files" in the "Rules" section - General.rules: added deny rules for logging before policy deny 1.0.6 - added syntax for ipchains (Linux) - setup DENY rules with logging on (ipfwadm,ipchains) - formatted output in verbose mode (ipfwadm,ipchains) - fw-rules now handles Firewall-service e.g.: ./fw-rules Firewall/telnet del (execute rules/Firewall/telnet.rules with option delete) 1.0.5 - inserted option -s for "firewall" (setup) The option -s executes the scripts in the setup-directory instead of re-generating all rules from the configuration files Usage: firewall -s start -> INCREASES THE SPEED OF THE "FIREWALL" SCRIPT BY FACTOR 10 OR MORE !!! - added Syntax for IP-Filter - new scripts: create_rules, save_config |