Some updates regarding conntracking. Start of improved security over more permissive allows.
parent
57f8db5aa1
commit
d0ee1bcfbb
|
@ -6,12 +6,13 @@
|
||||||
- Trusted IP source (IPv4/IPv6) - 3/30/2014
|
- Trusted IP source (IPv4/IPv6) - 3/30/2014
|
||||||
- MSS Clamping (IPv4/IPv6) - 3/30/2014
|
- MSS Clamping (IPv4/IPv6) - 3/30/2014
|
||||||
- Trusted DNS server as client (IPv4/IPv6) - 3/30/2014
|
- Trusted DNS server as client (IPv4/IPv6) - 3/30/2014
|
||||||
|
- Adapted to use conntracking if available - 4/5/2014
|
||||||
- Easy Block functionality (IPv4/IPv6) - 3/31/2014
|
- Easy Block functionality (IPv4/IPv6) - 3/31/2014
|
||||||
- ACL/Filtering functionality (IPv4/IPv6) - 4/5/2014
|
- ACL/Filtering functionality (IPv4/IPv6) - 4/5/2014
|
||||||
- NAT/NETMAP functionality (IPv4/IPv6) - 4/5/2014
|
- NAT/NETMAP functionality (IPv4/IPv6) - 4/5/2014
|
||||||
- IPv6 NAT/NETMAP is untested, have no internal use for it, let me know if works/doesnt
|
- IPv6 NAT/NETMAP is untested, have no internal use for it, let me know if works/doesnt
|
||||||
- Forwarding functionality (IPv4/IPv6) - 4/5/2014
|
- Forwarding functionality (IPv4/IPv6) - 4/5/2014
|
||||||
- Deps on Enablev(4|6)ConnectionTracking for NAT functionality
|
- Deps on Enablev(4|6)ConnectionTracking for NAT functionality - 4/5/2014
|
||||||
|
|
||||||
=-=-=-=-= PRE 2.0 REWRITE =-=-=-=-=
|
=-=-=-=-= PRE 2.0 REWRITE =-=-=-=-=
|
||||||
1.1 - Brielle Bruns <bruns@2mbit.com>
|
1.1 - Brielle Bruns <bruns@2mbit.com>
|
||||||
|
|
Loading…
Reference in New Issue