Firewalld Versions Save

Stateful zone based firewall daemon with D-Bus interface

v1.2.6

11 months ago

This is a bug fix only release.

Eric Garver (4):

  • fix(reload): restore policy for old backend if it changed (fa4f4863)
  • fix(io): rich: tcp mss: handle value=None (52a754ef)
  • fix(firewall-config): rich: set destination address (ab92c097)
  • fix(policy): mixed IP families in ingress/egress (d9e4b96a)

v1.3.3

11 months ago

This is a bug fix only release.

Eric Garver (4):

  • fix(reload): restore policy for old backend if it changed (de85849e)
  • fix(io): rich: tcp mss: handle value=None (8016f100)
  • fix(firewall-config): rich: set destination address (f6641a96)
  • fix(policy): mixed IP families in ingress/egress (69ed4d63)

v1.3.2

1 year ago

This is a bug fix only release.

  • test(container): add centos9-stream (b7bb3d0)
  • test(functions): iptables: normalize protocols to numeric values (33a1b16)
  • test(functions): ip6tables: normalize opt field output (eeac39c)

v0.9.11

1 year ago

This is a bug fix only release.

Aidan MacDonald (1):

  • fix(fw_nm): use IP interface names for connection lookup (d8bfa1db)

Donald Yandt (2):

  • fix(firewall-config): deprecation warnings (176e501a)
  • fix(firewall-config): invalid iterator (0da9e54f)

Eric Garver (3):

  • fix(service): include: when used with rich rule (fd5570dd)
  • fix(nftables): rich: log: limit was not taking effect (5dd75ca8)
  • fix(ipset): chunk entries when restoring set (714f9634)

Zesko (1):

  • fix(applet): allows using KDE network connection editor (d8fbb3bb)

v1.3.1

1 year ago

This is a bug fix only release.

Aidan MacDonald (1):

  • fix(fw_nm): use IP interface names for connection lookup (18c8b810)

Donald Yandt (1):

  • fix(fw_policy): raise exceptions (5ae9322d)

Eric Garver (5):

  • fix(service): include: when used with rich rule (986f0be5)
  • fix(nftables): rich: log: limit was not taking effect (0dc0575e)
  • fix(build): rpm must build all as prerequisite (6896748e)
  • fix: use error codes for FirewallError instances (370e5f2f)
  • fix(ipset): chunk entries when restoring set (8a888554)

Zesko (1):

  • fix(applet): allows using KDE network connection editor (29c8ef65)

v1.2.5

1 year ago

This is a bug fix only release.

Eric Garver (1):

  • fix(ipset): chunk entries when restoring set (73a49e2e)

v1.2.4

1 year ago

This is a bug fix only release.

Aidan MacDonald (1):

  • fix(fw_nm): use IP interface names for connection lookup (be231a8d)

Donald Yandt (1):

  • fix(fw_policy): raise exceptions (94795a3a)

Eric Garver (3):

  • fix(service): include: when used with rich rule (27dc8042)
  • fix(nftables): rich: log: limit was not taking effect (32664ac2)
  • fix: use error codes for FirewallError instances (4b84236f)

Zesko (1):

  • fix(applet): allows using KDE network connection editor (d7673e7f)

v1.3.0

1 year ago

This is a feature release. It also includes all bug fixes since v1.2.0.

Afdal Sebi (1):

  • feat(service): add Warpinator (6de3f18d)

BrennanPaciorek (1):

  • feat(dbus): reset to default settings (4d327c5d)

Bruno Friedmann (1):

  • feat(service): add bareos-director bareos-filedaemon bareos-storage (7552095b)

Eric Garver (1):

  • feat(policy): masquerade: allow ingress zone to have interface (d8ebe1da)

Fabio Alessandro Locati (1):

  • feat(service): add Nebula service (3f59ce98)

François Rigault (1):

  • feat(service): add Ceph Prometheus exporter (ef9d51f3)

Petr Kubánek (1):

  • feat(service): add OMG DDS service definition (9ad3d37f)

Sam Morris (1):

  • feat(service): add llmnr-client service (0ae765cd)

nl6720 (1):

  • feat(service): add ps2link service (6d1586c7)

wouter bolsterlee (1):

  • feat(service): add definition for syncthing-relay (cab0d435)

v1.2.3

1 year ago

This is a bug fix only release.

Donald Yandt (3):

  • fix(tcp-mss-clamp): duplicate rule fragments (ac105a87)
  • fix(firewall-config): deprecation warnings (88da56c8)
  • fix(firewall-config): invalid iterator (8eac45a2)

Eric Garver (2):

  • fix(nftables): allow loopback packets before conntrack checks (129929b5)
  • fix(iptables): allow loopback packets before conntrack checks (9b689019)

v1.1.5

1 year ago

This is a bug fix only release.

Donald Yandt (3):

  • fix(tcp-mss-clamp): duplicate rule fragments (bae8df97)
  • fix(firewall-config): deprecation warnings (da5c2ecb)
  • fix(firewall-config): invalid iterator (f49da91a)

Eric Garver (2):

  • fix(nftables): allow loopback packets before conntrack checks (559fe38a)
  • fix(iptables): allow loopback packets before conntrack checks (13799a13)