summaryrefslogtreecommitdiff
Commit message (Collapse)AuthorAgeFilesLines
* net-firewall/psad: add missing selinux policy depSam James2023-06-281-2/+5
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/ipt_netflow: remove obsolete USE="debug"Sergey Popov2023-06-273-9/+3
| | | | | | Reported-by: Agostino Sarubbo <ago@gentoo.org> Closes: https://bugs.gentoo.org/831306 Signed-off-by: Sergey Popov <pinkbyte@gentoo.org>
* net-firewall/ipt_netflow: revision bumpSergey Popov2023-06-274-18/+127
| | | | | | | | Bump EAPI to 8. Migrate to linux-mod-r1 eclass Sync live ebuild Add missing remote-id in metadata.xml Signed-off-by: Sergey Popov <pinkbyte@gentoo.org>
* net-firewall/firewalld: add 2.0.0Sam James2023-06-232-0/+224
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/ipset: Make temp suffix configurableHank Leininger2023-06-173-0/+243
| | | | | | | Signed-off-by: Hank Leininger <hlein@korelogic.com> Closes: https://bugs.gentoo.org/908235 Closes: https://github.com/gentoo/gentoo/pull/31516 Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: add 1.3.3Sam James2023-06-152-0/+224
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/xtables-addons: Stabilize 3.24 x86, #907642Arthur Zamarin2023-06-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/xtables-addons: Stabilize 3.24 amd64, #907642Arthur Zamarin2023-06-011-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/rtsp-conntrack: drop (now) unnecessary workaroundIonen Wolkens2023-05-311-2/+2
| | | | Signed-off-by: Ionen Wolkens <ionen@gentoo.org>
* net-firewall/rtsp-conntrack: EAPI7->8, migrate to linux-mod-r1Ionen Wolkens2023-05-301-0/+27
| | | | | | | | The modulesd .conf are lost but they did not seem useful, users can make their own or keep the old if modified (does nothing by default, just a template). Signed-off-by: Ionen Wolkens <ionen@gentoo.org>
* net-firewall/xtables-addons: rewrite with linux-mod-r1 migrationIonen Wolkens2023-05-301-0/+107
| | | | | | | | | Originally meant to do a quick migration, but it had lingering issues and felt near unmaintainable as-is. Maybe not entirely correct (I don't use this) but it should be easier for future maintainers to go from here. Signed-off-by: Ionen Wolkens <ionen@gentoo.org>
* net-firewall/arno-iptables-firewall: drop empty DEPENDJoonas Niilola2023-05-181-1/+1
| | | | Signed-off-by: Joonas Niilola <juippis@gentoo.org>
* net-firewall/arno-iptables-firewall: fix metadata indentFerenc Erki2023-05-181-12/+12
| | | | | | Signed-off-by: Ferenc Erki <erkiferenc@gmail.com> Closes: https://github.com/gentoo/gentoo/pull/30478 Signed-off-by: Joonas Niilola <juippis@gentoo.org>
* net-firewall/arno-iptables-firewall: bump version to 2.1.1aFerenc Erki2023-05-182-0/+108
| | | | | Signed-off-by: Ferenc Erki <erkiferenc@gmail.com> Signed-off-by: Joonas Niilola <juippis@gentoo.org>
* net-firewall/xtables-addons: drop 3.20, 3.21Sam James2023-05-013-380/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: drop 1.0.5-r1, 1.0.6-r1Sam James2023-05-013-466/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/ipset: drop 7.15, 7.16-r1Sam James2023-05-014-246/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: drop 1.3.0, 1.3.1Sam James2023-05-013-434/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/conntrack-tools: drop 1.4.7Sam James2023-05-011-105/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/xtables-addons: add 3.24Sam James2023-05-012-0/+190
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: stable 1.0.7-r1 for hppa, bug #904916Rolf Eike Beer2023-04-291-1/+1
| | | | | Signed-off-by: Rolf Eike Beer <eike@sf-mail.de> Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: stable 1.0.7-r1 for sparc, bug #904916Rolf Eike Beer2023-04-291-1/+1
| | | | | Signed-off-by: Rolf Eike Beer <eike@sf-mail.de> Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/iptables: Stabilize 1.8.9 amd64, #899338Arthur Zamarin2023-04-291-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/firewalld: Stabilize 1.3.2 amd64, #904854Jakov Smolić2023-04-251-1/+1
| | | | Signed-off-by: Jakov Smolić <jsmolic@gentoo.org>
* net-firewall/nftables: Stabilize 1.0.7-r1 ppc, #904916Jakov Smolić2023-04-241-1/+1
| | | | Signed-off-by: Jakov Smolić <jsmolic@gentoo.org>
* net-firewall/nftables: Stabilize 1.0.7-r1 ppc64, #904916Arthur Zamarin2023-04-241-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/nftables: Stabilize 1.0.7-r1 arm, #904916Arthur Zamarin2023-04-241-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/nftables: Stabilize 1.0.7-r1 x86, #904916Sam James2023-04-231-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: Stabilize 1.0.7-r1 arm64, #904916Sam James2023-04-231-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: Stabilize 1.0.7-r1 amd64, #904916Sam James2023-04-231-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: Stabilize 1.3.2 arm, #904854Sam James2023-04-231-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: Stabilize 1.3.2 ppc64, #904854Sam James2023-04-231-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: Stabilize 1.3.2 arm64, #904854Sam James2023-04-231-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: Stabilize 1.3.2 x86, #904854Sam James2023-04-231-1/+1
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: add 1.3.2Sam James2023-04-232-0/+217
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: add 1.3.1Sam James2023-04-132-0/+217
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/firewalld: drop 1.2.1, 1.2.2Sam James2023-04-133-430/+0
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/iptables: Stabilize 1.8.9 x86, #899338Arthur Zamarin2023-04-031-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/iptables: Stabilize 1.8.9 arm, #899338Arthur Zamarin2023-04-031-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/iptables: Stabilize 1.8.9 arm64, #899338Arthur Zamarin2023-04-031-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/nftables: Always require sys-devel/flex for buildingKerin Millar2023-03-224-24/+12
| | | | | | | | | | | | It is always necessary for flex to be available, whereas bison is only necessary where building from git. Update the BDEPEND declarations to reflect this. Also, bump the revision number for the formal releases because --changed-deps isn't a commonly used option and nftables isn't a particularly large package. Signed-off-by: Kerin Millar <kfm@plushkava.net> Closes: https://bugs.gentoo.org/876730 Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: Use the newly built libnftables.so in the pkg_preinst ↵Kerin Millar2023-03-194-75/+90
| | | | | | | | | | | check Doing so is appropriate because it's not a library that's provided externally. Also, tidy up the code structure and replace the outdated pkg_preinst() function in the ebuild for v1.0.5. Signed-off-by: Kerin Millar <kfm@plushkava.net> Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: Require >=libnftnl-1.2.5 for 1.0.7 and 9999Kerin Millar2023-03-192-2/+2
| | | | | Signed-off-by: Kerin Millar <kfm@plushkava.net> Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/ipset: Stabilize 7.17 ppc64, #892177Arthur Zamarin2023-03-151-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/nftables: add 1.0.7Sam James2023-03-153-2/+253
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: add commentary re pkg_preinst checkSam James2023-03-102-0/+4
| | | | Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/nftables: Don't test iptables-nft rulesets in pkg_preinst()Kerin Millar2023-03-101-1/+14
| | | | | | | | | | | | | | | | | | | | | | | | | | Rulesets generated by iptables-nft are special in nature and will not always be printed in a way that constitutes a valid syntax for nft(8). Consider the following example in which iptables-nft would ideally have generated a native rule that specifies "reject with tcp reset". Instead, it generated a rule that integrates with an xtables target. # iptables-nft -S -A INPUT -j REJECT --reject-with tcp-reset # nft list ruleset # Warning: table ip filter is managed by iptables-nft, do not touch! table ip filter { chain INPUT { type filter hook input priority filter; policy accept; counter packets 0 bytes 0 xt target REJECT } } Simply ignore the ruleset in the case that it appears to have been generated by iptables-nft. Signed-off-by: Kerin Millar <kfm@plushkava.net> Signed-off-by: Sam James <sam@gentoo.org>
* net-firewall/iptables: Stabilize 1.8.9 ppc, #899338Arthur Zamarin2023-03-071-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/iptables: Stabilize 1.8.9 sparc, #899338Arthur Zamarin2023-03-071-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>
* net-firewall/iptables: Stabilize 1.8.9 hppa, #899338Arthur Zamarin2023-03-071-1/+1
| | | | Signed-off-by: Arthur Zamarin <arthurzam@gentoo.org>