The Netfilter HomePage: 1.2.1
This version requires kernel 2.4.0 or above.
Bugs Fixed from 1.2:
- Missing quotes around log-prefix
[ Bart Theunissen ]
- Bug in save function of string match
[ Gianni Tedesco ]
- ip6tables.c string buffer size fixes
[ Andras Kis-Szabo ]
- dependency problem with iptables-save / iptables-restore
[ Harald Welte ]
- strtok problem with iptables-save / iptables-restore
[ Harald Welte ]
- Problems with tcp/udp extension and multiple calls of do_command()
[ Sven Koch ]
- Kernel bugfixes in patch-o-matic:
- Updated rpc-record patch to work with 2.4.0
[ Marc Boucher ]
- New ftp-pasv patch for fixing PASV detection with some ftpd's
[ Erik Hensema ]
- Fix checksum calculation of TOS target
[ Rusty Russell ]
Changes from 1.2:
- New `pending-patches' target
[ Rusty Russell ]
- build all shared library extensions regardless of kernel tree
[ Rusty Russell ]
- New counter-restore functions for iptables
[ Harald Welte ]
- Added libiptc and libipulog to `devel' Makefile target
[ Harald Welte ]
- Ported iptables-save/restore to IPv6
[ Andras Kis-Szabo ]
- Updated ULOG target (now in-kernel accumulation [= higher performance])
[ Harald Welte ]
- Added fxp support to ftp-multi patch
[ Magnus Sandin ]
- Implemented Boyer Moore Sublinear search algorithm for string match
[ Gianni Tedesco ]
- Fixed tcp-window-tracking incompatibility with NAT helpers
[ Harald Welte ]
- New patch-o-matic patches:
- New generic sequence number offset API for nat helpers
[ Harald Welte ]
- New psd (port-scan-detection) match
[ Dennis Koslowski, Markus Henning ]
- New NETLINK target for old ipchains -o behaviour
[ Gianni Tedesco ]
- New SAME target as a special case of SNAT
[ Martin Josefsson ]
- Ported LOG target to IPv6
[ Jan Rekorajski ]
- Ported owner, limit, mac and multiport match to IPv6
[ Jan Rekorajski ]