[fwbuilder-commits] [SCM] Firewall Builder GUI and Policy Compilers Open Source Code branch, develo
Brought to you by:
mikehorn
From: <gi...@ir...> - 2011-08-25 21:03:39
|
This is an automated email from the git hooks/post-receive script. It was generated because a ref change was pushed to the repository containing the project "Firewall Builder GUI and Policy Compilers Open Source Code". The branch, development has been updated via 25efaa6a9102febe1a10e29a6b12db127c6365bd (commit) from a78619ed46da9736ab47a55c54c586206a24bd9c (commit) Those revisions listed above that are new to this repository have not appeared on any other notification email; so we list those revisions in full, below. - Log ----------------------------------------------------------------- commit 25efaa6a9102febe1a10e29a6b12db127c6365bd Author: Vadim Kurland <va...@ne...> Date: Thu Aug 25 13:56:03 2011 -0700 fixes #2650 "rules with address range that includes firewall address in Src are placed in OUTPUT chain even though addresses that do not match the firewall should go in FORWARD" diff --git a/doc/ChangeLog b/doc/ChangeLog index 92bf607..2f7f34e 100644 --- a/doc/ChangeLog +++ b/doc/ChangeLog @@ -1,3 +1,10 @@ +2011-08-25 Vadim Kurland <va...@ne...> + + * PolicyCompiler_ipt.cpp (processNext): fixes #2650 "rules with + address range that includes firewall address in Src are placed in + OUTPUT chain even though addresses that do not match the firewall + should go in FORWARD" + 2011-08-14 Vadim Kurland <va...@ne...> * InetAddr.cpp (InetAddr::isValidV4Netmask): function diff --git a/src/iptlib/PolicyCompiler_ipt.cpp b/src/iptlib/PolicyCompiler_ipt.cpp index 284cdfc..aa8ec1f 100644 --- a/src/iptlib/PolicyCompiler_ipt.cpp +++ b/src/iptlib/PolicyCompiler_ipt.cpp @@ -27,6 +27,7 @@ #include "OSConfigurator_linux24.h" #include "utils.h" +#include "fwbuilder/AddressRange.h" #include "fwbuilder/AddressTable.h" #include "fwbuilder/Cluster.h" #include "fwbuilder/CustomService.h" @@ -2296,6 +2297,149 @@ bool PolicyCompiler_ipt::splitIfDstAny::processNext() return true; } +/** + * If Src has an AddressRange object that represents single address, + * replace it with corresponding IPv4 object. Call this rule processor + * before splitIfSrcMatchingAddressRange + * + * #2650 + */ +bool PolicyCompiler_ipt::specialCaseAddressRangeInSrc::processNext() +{ + PolicyRule *rule = getNext(); if (rule==NULL) return false; + + Address *src = compiler->correctForCluster(compiler->getFirstSrc(rule)); + + if (src && !src->isAny() && AddressRange::isA(src) && + src->dimension() == 1) + { + Address *new_addr = compiler->dbcopy->createIPv4(); + new_addr->setName(src->getName() + "_addr"); + new_addr->setAddress(AddressRange::cast(src)->getRangeStart()); + new_addr->setNetmask(InetAddr(InetAddr::getAllOnes())); + compiler->persistent_objects->add(new_addr); + + src->clearChildren(); + src->addRef(new_addr); + } + + tmp_queue.push_back(rule); // add old rule in any case + + return true; +} + +/** + * If Dst has an AddressRange object that represents single address, + * replace it with corresponding IPv4 object. Call this rule processor + * before splitIfDstMatchingAddressRange + * + * #2650 + */ +bool PolicyCompiler_ipt::specialCaseAddressRangeInDst::processNext() +{ + PolicyRule *rule = getNext(); if (rule==NULL) return false; + + Address *dst = compiler->correctForCluster(compiler->getFirstDst(rule)); + + if (dst && !dst->isAny() && AddressRange::isA(dst) && + dst->dimension() == 1) + { + Address *new_addr = compiler->dbcopy->createIPv4(); + new_addr->setName(dst->getName() + "_addr"); + new_addr->setAddress(AddressRange::cast(dst)->getRangeStart()); + new_addr->setNetmask(InetAddr(InetAddr::getAllOnes())); + compiler->persistent_objects->add(new_addr); + + dst->clearChildren(); + dst->addRef(new_addr); + } + + tmp_queue.push_back(rule); // add old rule in any case + + return true; +} + +/** + * Split rule if src has addressRange object that matches the + * firewall. If some addresses inside the range match the firewall, + * while others dont, the rule must be placed in both OUTPUT and + * FORWARD chains. + * + * #2650 + */ +bool PolicyCompiler_ipt::splitIfSrcMatchingAddressRange::processNext() +{ + PolicyCompiler_ipt *ipt_comp = dynamic_cast<PolicyCompiler_ipt*>(compiler); + PolicyRule *rule=getNext(); if (rule==NULL) return false; + + Address *src = compiler->correctForCluster(compiler->getFirstSrc(rule)); + + bool b, m; + b=m= !( compiler->getCachedFwOpt()->getBool("bridging_fw") ); + + /* + * directions outbound or both: if src is an address range that + * matches fw, we should split the rule to make sure we match both + * in OUTPUT and FORWARD + */ + if ( rule->getDirection() != PolicyRule::Inbound && + src && !src->isAny() && AddressRange::isA(src) && + ipt_comp->complexMatch(src, ipt_comp->fw, b, m)) + { + PolicyRule *r= compiler->dbcopy->createPolicyRule(); + compiler->temp_ruleset->add(r); + r->duplicate(rule); + ipt_comp->setChain(r, "OUTPUT"); + r->setDirection( PolicyRule::Outbound ); + tmp_queue.push_back(r); + } + + tmp_queue.push_back(rule); + + return true; +} + + +/** + * Split rule if dst has addressRange object that matches the + * firewall. If some addresses inside the range match the firewall, + * while others dont, the rule must be placed in both INPUT and + * FORWARD chains. + * + * #2650 + */ +bool PolicyCompiler_ipt::splitIfDstMatchingAddressRange::processNext() +{ + PolicyCompiler_ipt *ipt_comp = dynamic_cast<PolicyCompiler_ipt*>(compiler); + PolicyRule *rule=getNext(); if (rule==NULL) return false; + + Address *dst = compiler->correctForCluster(compiler->getFirstDst(rule)); + + bool b, m; + b=m= !( compiler->getCachedFwOpt()->getBool("bridging_fw") ); + + /* + * directions inbound or both: if src is an address range that + * matches fw, we should split the rule to make sure we match both + * in INPUT and FORWARD + */ + if ( rule->getDirection() != PolicyRule::Outbound && + dst && !dst->isAny() && AddressRange::isA(dst) && + ipt_comp->complexMatch(dst, ipt_comp->fw, b, m)) + { + PolicyRule *r= compiler->dbcopy->createPolicyRule(); + compiler->temp_ruleset->add(r); + r->duplicate(rule); + ipt_comp->setChain(r, "INPUT"); + r->setDirection( PolicyRule::Outbound ); + tmp_queue.push_back(r); + } + + tmp_queue.push_back(rule); + + return true; +} + bool PolicyCompiler_ipt::splitIfSrcAnyForShadowing::processNext() { PolicyCompiler_ipt *ipt_comp = dynamic_cast<PolicyCompiler_ipt*>(compiler); @@ -2990,14 +3134,18 @@ bool PolicyCompiler_ipt::decideOnChainIfSrcFW::processNext() { case PolicyRule::Outbound: /* if direction is "Outbound", chain can never be INPUT, but could be FORWARD */ - if (!src->isAny() && compiler->complexMatch(src, compiler->fw, b, m)) + if (! src->isAny() && + ! AddressRange::isA(src) && // #2650 + compiler->complexMatch(src, compiler->fw, b, m)) ipt_comp->setChain(rule,"OUTPUT"); break; case PolicyRule::Both: /* direction == Both */ - if (!src->isAny() && compiler->complexMatch(src, compiler->fw, b, m)) + if (! src->isAny() && + ! AddressRange::isA(src) && // #2650 + compiler->complexMatch(src, compiler->fw, b, m)) { ipt_comp->setChain(rule,"OUTPUT"); rule->setDirection( PolicyRule::Outbound ); @@ -3089,6 +3237,7 @@ bool PolicyCompiler_ipt::decideOnChainIfDstFW::processNext() case PolicyRule::Inbound: /* if direction is "Inbound", chain can never be OUTPUT, but could be FORWARD */ if (!dst->isAny() && + ! AddressRange::isA(dst) && // #2650 (compiler->complexMatch(dst,compiler->fw,b,m) || std::find(cluster_members.begin(), cluster_members.end(), @@ -3101,6 +3250,7 @@ bool PolicyCompiler_ipt::decideOnChainIfDstFW::processNext() /* direction == Both */ if (!dst->isAny() && + ! AddressRange::isA(dst) && // #2650 (compiler->complexMatch(dst,compiler->fw,b,m) || std::find(cluster_members.begin(), cluster_members.end(), @@ -3252,6 +3402,12 @@ bool PolicyCompiler_ipt::finalizeChain::processNext() Address *src = compiler->correctForCluster(compiler->getFirstSrc(rule)); Address *dst = compiler->correctForCluster(compiler->getFirstDst(rule)); +/* + * Note that we deal with address ranges in splitIfSrcMatchingAddressRange and + * splitIfDstMatchingAddressRange. At this point we treat ranges as always + * not matching the firewall (so the go into FORWARD chain) + */ + bool b,m; /* * do not check for broadcasts and multicasts in bridging firewall because @@ -3263,7 +3419,7 @@ bool PolicyCompiler_ipt::finalizeChain::processNext() { case PolicyRule::Inbound: /* if direction is "Inbound", chain can never be OUTPUT, but could be FORWARD */ - if (dst && !dst->isAny() && + if (dst && !dst->isAny() && ! AddressRange::isA(dst) && // #2650 ipt_comp->complexMatch(dst, ipt_comp->fw, b, m)) { ipt_comp->setChain(rule,"INPUT"); @@ -3272,7 +3428,7 @@ bool PolicyCompiler_ipt::finalizeChain::processNext() case PolicyRule::Outbound: /* if direction is "Outbound", chain can never be INPUT, but could be FORWARD */ - if (src && !src->isAny() && + if (src && !src->isAny() && ! AddressRange::isA(src) && // #2650 ipt_comp->complexMatch(src, ipt_comp->fw, b, m)) { ipt_comp->setChain(rule,"OUTPUT"); @@ -3282,14 +3438,14 @@ bool PolicyCompiler_ipt::finalizeChain::processNext() default: /* direction == Both */ - if (dst && !dst->isAny() && + if (dst && !dst->isAny() && ! AddressRange::isA(dst) && // #2650 ipt_comp->complexMatch(dst, ipt_comp->fw, b, m)) { ipt_comp->setChain(rule,"INPUT"); break; } - if (src && !src->isAny() && + if (src && !src->isAny() && ! AddressRange::isA(src) && // #2650 ipt_comp->complexMatch(src, ipt_comp->fw, b, m)) { ipt_comp->setChain(rule,"OUTPUT"); @@ -4352,6 +4508,16 @@ void PolicyCompiler_ipt::compile() * addresses in the range may match firewall */ add( new addressRanges("process address ranges")); + } else + { + add( new specialCaseAddressRangeInSrc( + "replace single address range in Src")); + add( new specialCaseAddressRangeInDst( + "replace single address range in Dst")); + add( new splitIfSrcMatchingAddressRange( + "split rule if Src contains matching address range object")); + add( new splitIfDstMatchingAddressRange( + "split rule if Dst contains matching address range object")); } add( new dropRuleWithEmptyRE("drop rules with empty rule elements")); diff --git a/src/iptlib/PolicyCompiler_ipt.h b/src/iptlib/PolicyCompiler_ipt.h index a8415ea..2c6ca9c 100644 --- a/src/iptlib/PolicyCompiler_ipt.h +++ b/src/iptlib/PolicyCompiler_ipt.h @@ -489,6 +489,31 @@ protected: DECLARE_POLICY_RULE_PROCESSOR(splitIfDstAny); /** + * Split rule if src has addressRange object that matches the + * firewall + */ + DECLARE_POLICY_RULE_PROCESSOR(splitIfSrcMatchingAddressRange); + + /** + * Split rule if dst has addressRange object that matches the + * firewall + */ + DECLARE_POLICY_RULE_PROCESSOR(splitIfDstMatchingAddressRange); + + /** + * If Src has an AddressRange object that represents single + * address, replace it with corresponding IPv4 object + */ + DECLARE_POLICY_RULE_PROCESSOR(specialCaseAddressRangeInSrc); + + /** + * If Dst has an AddressRange object that represents single + * address, replace it with corresponding IPv4 object + */ + DECLARE_POLICY_RULE_PROCESSOR(specialCaseAddressRangeInDst); + + + /** * split rule if Src==any * * This works just like splitIfSrcAny, except is used in the diff --git a/test/ipt/cluster1_secuwall-1.fw.orig b/test/ipt/cluster1_secuwall-1.fw.orig index 50947d0..107579b 100755 --- a/test/ipt/cluster1_secuwall-1.fw.orig +++ b/test/ipt/cluster1_secuwall-1.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:47 2011 PDT by vadim +# Generated Thu Aug 25 13:48:53 2011 PDT by vadim # # files: * cluster1_secuwall-1.fw /etc/cluster1_secuwall-1.fw # @@ -609,7 +609,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:47 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:53 2011 by vadim" log "Database was cluster-tests.fwb" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall-base-rulesets.fw.orig b/test/ipt/firewall-base-rulesets.fw.orig index 49d1964..24a585c 100755 --- a/test/ipt/firewall-base-rulesets.fw.orig +++ b/test/ipt/firewall-base-rulesets.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:28:56 2011 PDT by vadim +# Generated Thu Aug 25 13:48:16 2011 PDT by vadim # # files: * firewall-base-rulesets.fw /etc/fw/firewall-base-rulesets.fw # @@ -466,7 +466,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:28:56 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:16 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-1.fw.orig b/test/ipt/firewall-ipv6-1.fw.orig index e169b3d..35c0721 100755 --- a/test/ipt/firewall-ipv6-1.fw.orig +++ b/test/ipt/firewall-ipv6-1.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:07 2011 PDT by vadim +# Generated Thu Aug 25 13:48:20 2011 PDT by vadim # # files: * firewall-ipv6-1.fw /etc/firewall-ipv6-1.fw # @@ -723,7 +723,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:07 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:20 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-2.fw.orig b/test/ipt/firewall-ipv6-2.fw.orig index f4f1b44..faa6a4c 100755 --- a/test/ipt/firewall-ipv6-2.fw.orig +++ b/test/ipt/firewall-ipv6-2.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:07 2011 PDT by vadim +# Generated Thu Aug 25 13:48:20 2011 PDT by vadim # # files: * firewall-ipv6-2.fw /etc/firewall-ipv6-2.fw # @@ -987,7 +987,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:07 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:20 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-3.fw.orig b/test/ipt/firewall-ipv6-3.fw.orig index 6753263..4c54623 100755 --- a/test/ipt/firewall-ipv6-3.fw.orig +++ b/test/ipt/firewall-ipv6-3.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:17 2011 PDT by vadim +# Generated Thu Aug 25 13:48:20 2011 PDT by vadim # # files: * firewall-ipv6-3.fw /etc/firewall-ipv6-3.fw # @@ -617,7 +617,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:17 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:20 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-4-1.fw.orig b/test/ipt/firewall-ipv6-4-1.fw.orig index 71d15b5..a1240e1 100755 --- a/test/ipt/firewall-ipv6-4-1.fw.orig +++ b/test/ipt/firewall-ipv6-4-1.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:28 2011 PDT by vadim +# Generated Thu Aug 25 13:48:27 2011 PDT by vadim # # files: * firewall-ipv6-4-1.fw /etc/firewall-ipv6-4-1.fw # @@ -568,7 +568,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:28 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:27 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-4.fw.orig b/test/ipt/firewall-ipv6-4.fw.orig index 6e5e137..992e692 100755 --- a/test/ipt/firewall-ipv6-4.fw.orig +++ b/test/ipt/firewall-ipv6-4.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:17 2011 PDT by vadim +# Generated Thu Aug 25 13:48:21 2011 PDT by vadim # # files: * firewall-ipv6-4.fw /etc/firewall-ipv6-4.fw # @@ -604,7 +604,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:17 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:21 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-5.fw.orig b/test/ipt/firewall-ipv6-5.fw.orig index 60f8034..fa76e1e 100755 --- a/test/ipt/firewall-ipv6-5.fw.orig +++ b/test/ipt/firewall-ipv6-5.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:19 2011 PDT by vadim +# Generated Thu Aug 25 13:48:26 2011 PDT by vadim # # files: * firewall-ipv6-5.fw /etc/firewall-ipv6-5.fw # @@ -433,7 +433,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:19 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:26 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-6.fw.orig b/test/ipt/firewall-ipv6-6.fw.orig index f87964c..b85ce76 100755 --- a/test/ipt/firewall-ipv6-6.fw.orig +++ b/test/ipt/firewall-ipv6-6.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:21 2011 PDT by vadim +# Generated Thu Aug 25 13:48:26 2011 PDT by vadim # # files: * firewall-ipv6-6.fw /etc/firewall-ipv6-6.fw # @@ -422,7 +422,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:21 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:26 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-7.fw.orig b/test/ipt/firewall-ipv6-7.fw.orig index 385cef7..96c11dd 100755 --- a/test/ipt/firewall-ipv6-7.fw.orig +++ b/test/ipt/firewall-ipv6-7.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:23 2011 PDT by vadim +# Generated Thu Aug 25 13:48:27 2011 PDT by vadim # # files: * firewall-ipv6-7.fw /etc/firewall-ipv6-7.fw # @@ -466,7 +466,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:23 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:27 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-8.fw.orig b/test/ipt/firewall-ipv6-8.fw.orig index 0797b0d..dcf9e23 100755 --- a/test/ipt/firewall-ipv6-8.fw.orig +++ b/test/ipt/firewall-ipv6-8.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:24 2011 PDT by vadim +# Generated Thu Aug 25 13:48:32 2011 PDT by vadim # # files: * firewall-ipv6-8.fw /etc/firewall-ipv6-8.fw # @@ -539,7 +539,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:24 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:32 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-ipt-reset-prolog-after-flush.fw.orig b/test/ipt/firewall-ipv6-ipt-reset-prolog-after-flush.fw.orig index 86b5a7b..59333fc 100755 --- a/test/ipt/firewall-ipv6-ipt-reset-prolog-after-flush.fw.orig +++ b/test/ipt/firewall-ipv6-ipt-reset-prolog-after-flush.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:26 2011 PDT by vadim +# Generated Thu Aug 25 13:48:33 2011 PDT by vadim # # files: * firewall-ipv6-ipt-reset-prolog-after-flush.fw /etc/firewall-ipv6-ipt-reset-prolog-after-flush.fw # @@ -463,7 +463,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:26 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:33 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-ipt-reset-prolog-after-interfaces.fw.orig b/test/ipt/firewall-ipv6-ipt-reset-prolog-after-interfaces.fw.orig index 3124322..09e4580 100755 --- a/test/ipt/firewall-ipv6-ipt-reset-prolog-after-interfaces.fw.orig +++ b/test/ipt/firewall-ipv6-ipt-reset-prolog-after-interfaces.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:28 2011 PDT by vadim +# Generated Thu Aug 25 13:48:33 2011 PDT by vadim # # files: * firewall-ipv6-ipt-reset-prolog-after-interfaces.fw /etc/firewall-ipv6-ipt-reset-prolog-after-interfaces.fw # @@ -463,7 +463,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:28 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:33 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-ipt-reset-prolog-top.fw.orig b/test/ipt/firewall-ipv6-ipt-reset-prolog-top.fw.orig index c73bb9d..da0bf53 100755 --- a/test/ipt/firewall-ipv6-ipt-reset-prolog-top.fw.orig +++ b/test/ipt/firewall-ipv6-ipt-reset-prolog-top.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:30 2011 PDT by vadim +# Generated Thu Aug 25 13:48:33 2011 PDT by vadim # # files: * firewall-ipv6-ipt-reset-prolog-top.fw /etc/firewall-ipv6-ipt-reset-prolog-top.fw # @@ -463,7 +463,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:30 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:33 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-nd-ns-1.fw.orig b/test/ipt/firewall-ipv6-nd-ns-1.fw.orig index 53069be..58a658d 100755 --- a/test/ipt/firewall-ipv6-nd-ns-1.fw.orig +++ b/test/ipt/firewall-ipv6-nd-ns-1.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:30 2011 PDT by vadim +# Generated Thu Aug 25 13:48:39 2011 PDT by vadim # # files: * firewall-ipv6-nd-ns-1.fw /etc/firewall-ipv6-nd-ns-1.fw # @@ -463,7 +463,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:30 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:39 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-nd-ns-2.fw.orig b/test/ipt/firewall-ipv6-nd-ns-2.fw.orig index 1004983..d2b7691 100755 --- a/test/ipt/firewall-ipv6-nd-ns-2.fw.orig +++ b/test/ipt/firewall-ipv6-nd-ns-2.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:33 2011 PDT by vadim +# Generated Thu Aug 25 13:48:39 2011 PDT by vadim # # files: * firewall-ipv6-nd-ns-2.fw /etc/firewall-ipv6-nd-ns-2.fw # @@ -467,7 +467,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:33 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:39 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-prolog-after-flush.fw.orig b/test/ipt/firewall-ipv6-prolog-after-flush.fw.orig index 5f21c43..4cefff9 100755 --- a/test/ipt/firewall-ipv6-prolog-after-flush.fw.orig +++ b/test/ipt/firewall-ipv6-prolog-after-flush.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:33 2011 PDT by vadim +# Generated Thu Aug 25 13:48:40 2011 PDT by vadim # # files: * firewall-ipv6-prolog-after-flush.fw /etc/firewall-ipv6-prolog-after-flush.fw # @@ -441,7 +441,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:33 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:40 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-prolog-after-interfaces.fw.orig b/test/ipt/firewall-ipv6-prolog-after-interfaces.fw.orig index 6d62743..19c77d2 100755 --- a/test/ipt/firewall-ipv6-prolog-after-interfaces.fw.orig +++ b/test/ipt/firewall-ipv6-prolog-after-interfaces.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:35 2011 PDT by vadim +# Generated Thu Aug 25 13:48:40 2011 PDT by vadim # # files: * firewall-ipv6-prolog-after-interfaces.fw /etc/firewall-ipv6-prolog-after-interfaces.fw # @@ -441,7 +441,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:35 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:40 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall-ipv6-prolog-top.fw.orig b/test/ipt/firewall-ipv6-prolog-top.fw.orig index e7fe93f..d9444ef 100755 --- a/test/ipt/firewall-ipv6-prolog-top.fw.orig +++ b/test/ipt/firewall-ipv6-prolog-top.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:35 2011 PDT by vadim +# Generated Thu Aug 25 13:48:45 2011 PDT by vadim # # files: * firewall-ipv6-prolog-top.fw /etc/firewall-ipv6-prolog-top.fw # @@ -441,7 +441,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:35 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:45 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall-server-1-s.fw.orig b/test/ipt/firewall-server-1-s.fw.orig index bed20d9..e7b335e 100755 --- a/test/ipt/firewall-server-1-s.fw.orig +++ b/test/ipt/firewall-server-1-s.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:29:37 2011 PDT by vadim +# Generated Thu Aug 25 13:48:45 2011 PDT by vadim # # files: * firewall-server-1-s.fw /etc/fw/firewall-server-1-s.fw # @@ -414,7 +414,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:29:37 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:48:45 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall.fw.orig b/test/ipt/firewall.fw.orig index 03e13f9..3868894 100755 --- a/test/ipt/firewall.fw.orig +++ b/test/ipt/firewall.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:07 2011 PDT by vadim +# Generated Thu Aug 25 13:46:01 2011 PDT by vadim # # files: * firewall.fw /etc/fw/firewall.fw # @@ -1397,7 +1397,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:07 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:01 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall1.fw.orig b/test/ipt/firewall1.fw.orig index b445a05..b4f08b6 100755 --- a/test/ipt/firewall1.fw.orig +++ b/test/ipt/firewall1.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:08 2011 PDT by vadim +# Generated Thu Aug 25 13:46:01 2011 PDT by vadim # # files: * firewall1.fw /etc/fw/firewall1.fw # @@ -1269,7 +1269,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:08 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:01 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall10.fw.orig b/test/ipt/firewall10.fw.orig index 6aa85c6..8f00ccb 100755 --- a/test/ipt/firewall10.fw.orig +++ b/test/ipt/firewall10.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:08 2011 PDT by vadim +# Generated Thu Aug 25 13:46:00 2011 PDT by vadim # # files: * firewall10.fw /etc/fw/firewall10.fw # @@ -494,7 +494,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:08 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:00 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall11.fw.orig b/test/ipt/firewall11.fw.orig index 3a130b8..41982ea 100755 --- a/test/ipt/firewall11.fw.orig +++ b/test/ipt/firewall11.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:11 2011 PDT by vadim +# Generated Thu Aug 25 13:46:06 2011 PDT by vadim # # files: * firewall11.fw /etc/fw/firewall11.fw # @@ -614,7 +614,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:11 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:06 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall12.fw.orig b/test/ipt/firewall12.fw.orig index d526b75..a89dd11 100755 --- a/test/ipt/firewall12.fw.orig +++ b/test/ipt/firewall12.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:11 2011 PDT by vadim +# Generated Thu Aug 25 13:46:07 2011 PDT by vadim # # files: * firewall12.fw /etc/fw/firewall12.fw # @@ -532,7 +532,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:11 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:07 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall13.fw.orig b/test/ipt/firewall13.fw.orig index 50091ad..3933bf9 100755 --- a/test/ipt/firewall13.fw.orig +++ b/test/ipt/firewall13.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:14 2011 PDT by vadim +# Generated Thu Aug 25 13:46:07 2011 PDT by vadim # # files: * firewall13.fw /etc/fw/firewall13.fw # @@ -406,7 +406,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:14 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:07 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall14.fw.orig b/test/ipt/firewall14.fw.orig index cd3dfde..ba7d92b 100755 --- a/test/ipt/firewall14.fw.orig +++ b/test/ipt/firewall14.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:14 2011 PDT by vadim +# Generated Thu Aug 25 13:46:07 2011 PDT by vadim # # files: * firewall14.fw /etc/fw/firewall14.fw # @@ -425,7 +425,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:14 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:07 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall15.fw.orig b/test/ipt/firewall15.fw.orig index 87358f7..6365099 100755 --- a/test/ipt/firewall15.fw.orig +++ b/test/ipt/firewall15.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:16 2011 PDT by vadim +# Generated Thu Aug 25 13:46:11 2011 PDT by vadim # # files: * firewall15.fw /etc/fw/firewall15.fw # @@ -409,7 +409,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:16 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:11 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall16.fw.orig b/test/ipt/firewall16.fw.orig index 7700e00..1d00b24 100755 --- a/test/ipt/firewall16.fw.orig +++ b/test/ipt/firewall16.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:16 2011 PDT by vadim +# Generated Thu Aug 25 13:46:13 2011 PDT by vadim # # files: * firewall16.fw /etc/fw/firewall16.fw # @@ -513,7 +513,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:16 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:13 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall17.fw.orig b/test/ipt/firewall17.fw.orig index 32d30ac..165bd24 100755 --- a/test/ipt/firewall17.fw.orig +++ b/test/ipt/firewall17.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:19 2011 PDT by vadim +# Generated Thu Aug 25 13:46:13 2011 PDT by vadim # # files: * firewall17.fw /etc/fw/firewall17.fw # @@ -492,7 +492,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:19 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:13 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall18.fw.orig b/test/ipt/firewall18.fw.orig index 4c8bcaa..922a75a 100755 --- a/test/ipt/firewall18.fw.orig +++ b/test/ipt/firewall18.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:19 2011 PDT by vadim +# Generated Thu Aug 25 13:46:13 2011 PDT by vadim # # files: * firewall18.fw /etc/fw/firewall18.fw # @@ -527,7 +527,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:19 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:13 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall19.fw.orig b/test/ipt/firewall19.fw.orig index aa5e1d5..cb05bdd 100755 --- a/test/ipt/firewall19.fw.orig +++ b/test/ipt/firewall19.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:21 2011 PDT by vadim +# Generated Thu Aug 25 13:46:17 2011 PDT by vadim # # files: * firewall19.fw /etc/fw/firewall19.fw # @@ -531,7 +531,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:21 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:17 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall2-1.fw.orig b/test/ipt/firewall2-1.fw.orig index a38ae76..daecd42 100755 --- a/test/ipt/firewall2-1.fw.orig +++ b/test/ipt/firewall2-1.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:30 2011 PDT by vadim +# Generated Thu Aug 25 13:46:28 2011 PDT by vadim # # files: * firewall2-1.fw /etc/fw/firewall2-1.fw # @@ -1451,7 +1451,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:30 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:28 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall2-2.fw.orig b/test/ipt/firewall2-2.fw.orig index 4e6c7b4..cd9486f 100755 --- a/test/ipt/firewall2-2.fw.orig +++ b/test/ipt/firewall2-2.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:33 2011 PDT by vadim +# Generated Thu Aug 25 13:46:29 2011 PDT by vadim # # files: * firewall2-2.fw /etc/fw/firewall2-2.fw # @@ -1104,6 +1104,7 @@ script_body() { # iptables version is >= 1.2.11 $IPTABLES -A INPUT -p udp -m udp -m iprange --src-range 192.168.1.1-192.168.1.100 --dport 161 -m state --state NEW -j ACCEPT $IPTABLES -A OUTPUT -p udp -m udp -m iprange --src-range 192.168.1.1-192.168.1.100 --dport 161 -m state --state NEW -j ACCEPT + $IPTABLES -A FORWARD -p udp -m udp -m iprange --src-range 192.168.1.1-192.168.1.100 --dport 161 -m state --state NEW -j ACCEPT # # Rule 21 (global) # @@ -1280,7 +1281,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:33 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:29 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall2-3.fw.orig b/test/ipt/firewall2-3.fw.orig index c4a69ed..40bed75 100755 --- a/test/ipt/firewall2-3.fw.orig +++ b/test/ipt/firewall2-3.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:35 2011 PDT by vadim +# Generated Thu Aug 25 13:46:35 2011 PDT by vadim # # files: * firewall2-3.fw /etc/fw/firewall2-3.fw # @@ -1139,7 +1139,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:35 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:35 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall2-4.fw.orig b/test/ipt/firewall2-4.fw.orig index 0a91f4b..f6a4605 100755 --- a/test/ipt/firewall2-4.fw.orig +++ b/test/ipt/firewall2-4.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:37 2011 PDT by vadim +# Generated Thu Aug 25 13:46:40 2011 PDT by vadim # # files: * firewall2-4.fw /etc/fw/firewall2-4.fw # @@ -445,7 +445,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:37 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:40 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall2-5.fw.orig b/test/ipt/firewall2-5.fw.orig index 3ee7535..9c849f6 100755 --- a/test/ipt/firewall2-5.fw.orig +++ b/test/ipt/firewall2-5.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:40 2011 PDT by vadim +# Generated Thu Aug 25 13:46:41 2011 PDT by vadim # # files: * firewall2-5.fw /etc/fw/firewall2-5.fw # @@ -476,7 +476,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:40 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:41 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall2-6.fw.orig b/test/ipt/firewall2-6.fw.orig index d714e8f..c245a03 100755 --- a/test/ipt/firewall2-6.fw.orig +++ b/test/ipt/firewall2-6.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:42 2011 PDT by vadim +# Generated Thu Aug 25 13:46:46 2011 PDT by vadim # # files: * firewall2-6.fw /etc/fw/firewall2-6.fw # @@ -501,7 +501,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:42 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:46 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall2-7.fw.orig b/test/ipt/firewall2-7.fw.orig index ea11df1..b7f6998 100755 --- a/test/ipt/firewall2-7.fw.orig +++ b/test/ipt/firewall2-7.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:45 2011 PDT by vadim +# Generated Thu Aug 25 13:46:48 2011 PDT by vadim # # files: * firewall2-7.fw /etc/fw/firewall2-7.fw # @@ -441,7 +441,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:45 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:48 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall2.fw.orig b/test/ipt/firewall2.fw.orig index b1c1cd7..85c7827 100755 --- a/test/ipt/firewall2.fw.orig +++ b/test/ipt/firewall2.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:23 2011 PDT by vadim +# Generated Thu Aug 25 13:46:21 2011 PDT by vadim # # files: * firewall2.fw /etc/fw/firewall2.fw # @@ -1503,7 +1503,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:23 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:21 2011 by vadim" check_tools check_run_time_address_table_files diff --git a/test/ipt/firewall20-ipv6.fw.orig b/test/ipt/firewall20-ipv6.fw.orig index 4288a7f..08de457 100755 --- a/test/ipt/firewall20-ipv6.fw.orig +++ b/test/ipt/firewall20-ipv6.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:25 2011 PDT by vadim +# Generated Thu Aug 25 13:46:20 2011 PDT by vadim # # files: * firewall20-ipv6.fw /etc/fw/firewall20-ipv6.fw # @@ -477,7 +477,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:25 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:20 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall20.fw.orig b/test/ipt/firewall20.fw.orig index 26476d1..d41759f 100755 --- a/test/ipt/firewall20.fw.orig +++ b/test/ipt/firewall20.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:23 2011 PDT by vadim +# Generated Thu Aug 25 13:46:20 2011 PDT by vadim # # files: * firewall20.fw /etc/fw/firewall20.fw # @@ -695,7 +695,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:23 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:20 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall21-1.fw.orig b/test/ipt/firewall21-1.fw.orig index c1e70ab..41af5da 100755 --- a/test/ipt/firewall21-1.fw.orig +++ b/test/ipt/firewall21-1.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:28 2011 PDT by vadim +# Generated Thu Aug 25 13:46:27 2011 PDT by vadim # # files: * firewall21-1.fw /etc/fw/firewall21-1.fw # @@ -495,7 +495,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:28 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:27 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall21.fw.orig b/test/ipt/firewall21.fw.orig index 86013a3..c33b2c6 100755 --- a/test/ipt/firewall21.fw.orig +++ b/test/ipt/firewall21.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:26 2011 PDT by vadim +# Generated Thu Aug 25 13:46:23 2011 PDT by vadim # # files: * firewall21.fw /etc/fw/firewall21.fw # @@ -494,7 +494,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:26 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:23 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall22.fw.orig b/test/ipt/firewall22.fw.orig index afc608d..ba94436 100755 --- a/test/ipt/firewall22.fw.orig +++ b/test/ipt/firewall22.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:30 2011 PDT by vadim +# Generated Thu Aug 25 13:46:27 2011 PDT by vadim # # files: * firewall22.fw /etc/fw/firewall22.fw # @@ -411,7 +411,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:30 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:27 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall23-1.fw.orig b/test/ipt/firewall23-1.fw.orig index 4cde904..9ea60f9 100755 --- a/test/ipt/firewall23-1.fw.orig +++ b/test/ipt/firewall23-1.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:35 2011 PDT by vadim +# Generated Thu Aug 25 13:46:35 2011 PDT by vadim # # files: * firewall23-1.fw /etc/fw/firewall23-1.fw # @@ -585,7 +585,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:35 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:35 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall23.fw.orig b/test/ipt/firewall23.fw.orig index 388edb4..6a765ac 100755 --- a/test/ipt/firewall23.fw.orig +++ b/test/ipt/firewall23.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:32 2011 PDT by vadim +# Generated Thu Aug 25 13:46:34 2011 PDT by vadim # # files: * firewall23.fw /etc/fw/firewall23.fw # @@ -497,7 +497,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:32 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:34 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall24.fw.orig b/test/ipt/firewall24.fw.orig index 04f2bf0..2e9c007 100755 --- a/test/ipt/firewall24.fw.orig +++ b/test/ipt/firewall24.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:37 2011 PDT by vadim +# Generated Thu Aug 25 13:46:35 2011 PDT by vadim # # files: * firewall24.fw /etc/fw/firewall24.fw # @@ -514,7 +514,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:37 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:35 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall25.fw.orig b/test/ipt/firewall25.fw.orig index a20e3a7..7efca0e 100755 --- a/test/ipt/firewall25.fw.orig +++ b/test/ipt/firewall25.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:40 2011 PDT by vadim +# Generated Thu Aug 25 13:46:41 2011 PDT by vadim # # files: * firewall25.fw /etc/fw/firewall25.fw # @@ -705,7 +705,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:40 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:41 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall26.fw.orig b/test/ipt/firewall26.fw.orig index c21daec..4debd0e 100755 --- a/test/ipt/firewall26.fw.orig +++ b/test/ipt/firewall26.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:42 2011 PDT by vadim +# Generated Thu Aug 25 13:46:42 2011 PDT by vadim # # files: * firewall26.fw /etc/fw/firewall26.fw # @@ -585,7 +585,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:42 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:42 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall27.fw.orig b/test/ipt/firewall27.fw.orig index f0f9fa0..f6eb4d7 100755 --- a/test/ipt/firewall27.fw.orig +++ b/test/ipt/firewall27.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:45 2011 PDT by vadim +# Generated Thu Aug 25 13:46:48 2011 PDT by vadim # # files: * firewall27.fw /etc/fw/firewall27.fw # @@ -567,7 +567,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:45 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:48 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall28.fw.orig b/test/ipt/firewall28.fw.orig index ce78278..4f4ba8b 100755 --- a/test/ipt/firewall28.fw.orig +++ b/test/ipt/firewall28.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:47 2011 PDT by vadim +# Generated Thu Aug 25 13:46:48 2011 PDT by vadim # # files: * firewall28.fw /etc/fw/firewall28.fw # @@ -430,7 +430,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:47 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:48 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall29.fw.orig b/test/ipt/firewall29.fw.orig index 6c5d8b6..926d8fa 100755 --- a/test/ipt/firewall29.fw.orig +++ b/test/ipt/firewall29.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:47 2011 PDT by vadim +# Generated Thu Aug 25 13:46:51 2011 PDT by vadim # # files: * firewall29.fw /etc/fw/firewall29.fw # @@ -465,7 +465,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:47 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:51 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall3.fw.orig b/test/ipt/firewall3.fw.orig index 1c8b64b..701553f 100755 --- a/test/ipt/firewall3.fw.orig +++ b/test/ipt/firewall3.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:50 2011 PDT by vadim +# Generated Thu Aug 25 13:46:54 2011 PDT by vadim # # files: * firewall3.fw /etc/fw/firewall3.fw # @@ -599,7 +599,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:50 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:54 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall30.fw.orig b/test/ipt/firewall30.fw.orig index cab4f60..764624d 100755 --- a/test/ipt/firewall30.fw.orig +++ b/test/ipt/firewall30.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:50 2011 PDT by vadim +# Generated Thu Aug 25 13:46:54 2011 PDT by vadim # # files: * firewall30.fw /etc/fw/firewall30.fw # @@ -396,7 +396,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:50 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46:54 2011 by vadim" check_tools prolog_commands check_run_time_address_table_files diff --git a/test/ipt/firewall31.fw.orig b/test/ipt/firewall31.fw.orig index b07c2c0..af5e71a 100755 --- a/test/ipt/firewall31.fw.orig +++ b/test/ipt/firewall31.fw.orig @@ -2,9 +2,9 @@ # # This is automatically generated file. DO NOT MODIFY ! # -# Firewall Builder fwb_ipt v5.0.0.3547 +# Firewall Builder fwb_ipt v5.0.1.3575 # -# Generated Fri Jun 3 17:27:52 2011 PDT by vadim +# Generated Thu Aug 25 13:46:54 2011 PDT by vadim # # files: * firewall31.fw /etc/fw/firewall31.fw # @@ -468,7 +468,7 @@ test -z "$cmd" && { case "$cmd" in start) - log "Activating firewall script generated Fri Jun 3 17:27:52 2011 by vadim" + log "Activating firewall script generated Thu Aug 25 13:46... [truncated message content] |