Displaying 14 results from an estimated 14 matches for "connlabel".
2013 Jun 09
1
[Bug 828] New: connlabel.conf is missing in built package if it exists on the system.
https://bugzilla.netfilter.org/show_bug.cgi?id=828
           Summary: connlabel.conf is missing in built package if it
                    exists on the system.
           Product: iptables
           Version: unspecified
          Platform: x86_64
        OS/Version: other
            Status: NEW
          Severity: minor
          Priority: P5
         Component: unknown...
2017 Mar 10
4
[Bug 1128] New: ip6_tables connmark or connlabel never matches
https://bugzilla.netfilter.org/show_bug.cgi?id=1128
            Bug ID: 1128
           Summary: ip6_tables connmark or connlabel never matches
           Product: netfilter/iptables
           Version: unspecified
          Hardware: x86_64
                OS: SuSE Linux
            Status: NEW
          Severity: normal
          Priority: P5
         Component: ip6_tables (kernel)
          Assignee: netfilter-buglog at li...
2013 Aug 06
0
[ANNOUNCE] libnetfilter_conntrack 1.0.4 release
...y presents:
        libnetfilter_conntrack 1.0.4
libnetfilter_conntrack is a userspace library providing a programming
interface (API) to the in-kernel connection tracking state table. This
library is currently used by conntrack-tools and iptables, among other
applications.
This release includes connlabel support, one memleak fix and fixes in
the comparison API. See ChangeLog that comes attached to this email
for more details.
You can download it from:
http://www.netfilter.org/projects/libnetfilter_conntrack/downloads.html
ftp://ftp.netfilter.org/pub/libnetfilter_conntrack/
Have fun!
------------...
2013 May 29
1
[ANNOUNCE] iptables 1.4.19 release
Hi!
The Netfilter project proudly presents:
        iptables 1.4.19
This release includes support for the new connlabel and bpf matches
available in Linux 3.9, several fixes and manpage updates.
See ChangeLog that comes attached to this email for more details.
You can download it from:
http://www.netfilter.org/projects/iptables/downloads.html
ftp://ftp.netfilter.org/pub/iptables/
Have fun!
-------------- next p...
2025 Jan 14
0
[Bug 1128] ip6_tables connmark or connlabel never matches
https://bugzilla.netfilter.org/show_bug.cgi?id=1128
Florian Westphal <fw at strlen.de> changed:
           What    |Removed                     |Added
----------------------------------------------------------------------------
         Resolution|---                         |WONTFIX
             Status|NEW                         |RESOLVED
-- 
You are receiving this mail because:
You are
2013 Aug 06
0
[ANNOUNCE] conntrack-tools 1.4.2 release
...rom userspace. On the other hand, conntrackd
allows you to deploy highly available stateful firewall clusters and
to run connection tracking helpers from user-space.
More information in the official manual at:
http://conntrack-tools.netfilter.org/manual.html
This release includes bugfixes and the connlabel support. See ChangeLog that
comes attached to this email for more details.
You can download it from:
http://www.netfilter.org/projects/nfacct/downloads.html
ftp://ftp.netfilter.org/pub/nfacct/
Have fun!
-------------- next part --------------
Clemence Faure (2):
      conntrack: introduce -l opt...
2014 Apr 14
0
[ANNOUNCE]: Release of nftables 0.2
...conntrack mark is supported.
  - nft filter input ct mark set mark
  will set the conntrack mark to the packet mark
  - nft filter output mark set ct mark
  will set the packet mark to the conntrack mark
  - nft filter output ct mark set 0x1
  will set the conntrack mark to the value 0x1.
* connlabel support
  Support for connection tracking labels (connlabels) has been added.
  connlabel.conf is parsed and the values can be used as symbolic
  constants in combination with the "ct label" expression.
  - nft filter input ct label clients,servers accept
  will accept packets of conne...
2017 Jan 27
0
[ANNOUNCE] iptables 1.6.1 release
...arguments to usage message
Florian Westphal (5):
      iptables.8: mention iptables-save in -L documentation
      iptables.8: nat table has four builtin chains
      extensions: NETMAP: add ' to:' prefix when printing NETMAP target
      extensions: NETMAP: fix iptables-save output
      connlabel: clarify default config path
George Burgess IV (1):
      libxt_multiport: remove an unused variable
Giuseppe Longo (1):
      configure: make libmnl and libnftnl hard requirements
Guruswamy Basavaiah (4):
      iptables: extensions: iptables-translate prints extra "nft" after printing...
2019 May 27
0
[ANNOUNCE] iptables 1.8.3 release
...Support testing host binaries
      doc: Install ip{6,}tables-translate.8 manpages
      extensions: AUDIT: Document ineffective --type option
      extensions: Fix ipvs vproto parsing
      extensions: Fix ipvs vproto option printing
      extensions: Add testcase for libxt_ipvs
      extensions: connlabel: Fallback on missing connlabel.conf
      doc: Add arptables-nft man pages
      doc: Adjust arptables man pages
      doc: Add ebtables man page
      doc: Adjust ebtables man page
      xtables-legacy.8: Remove stray colon
      xtables-save: Point at existing man page in help text
      extensio...
2016 Dec 20
0
[ANNOUNCE] nftables 0.7 release
...add rule x y log flags skuid
  ... decide ethernet link layer address, eg.
     # nft add rule x y log flags ether
  ... or simply set on all flags:
     # nft add rule x y log flags all
* tc classid parser support, eg.
    nft add rule filter forward meta priority abcd:1234
* Allow numeric connlabels, so if connlabel still works with undefined
  labels, eg. ct label set 2.
* Document log, reject, counter, meta, limit, nat, ct, payload and
  queue statements from nft(8) manpage.
Bugfixes
========
Not strictly limited to this list below, but some highlights:
* Allow split table definitions,...
2013 Aug 06
0
[ANNOUNCE] iptables 1.4.20 release
...Perevalov (1):
      doc: clarify DEBUG usage macro
Andy Spencer (1):
      iptables: use autoconf to process .in man pages
Eric Leblond (1):
      configure: display summary
Florian Westphal (2):
      extensions: libipt_ULOG: man page should mention NFLOG as replacement
      extensions: libxt_connlabel: use libnetfilter_conntrack
Jozsef Kadlecsik (2):
      Introduce a new revision for the set match with the counters support
      libxt_CT: Add the "NOTRACK" alias
Mart Frauenlob (7):
      libip6t_mh: Correct command to list named mh types in manpage
      extensions: libxt_DNAT: rena...
2015 Jul 02
2
libguestfs error: need help troubleshooting
.../etc/security/pwquality.conf: Cannot write: No space left on device
tar: ./etc/krb5.conf: Cannot write: No space left on device
tar: ./etc/sysconfig/ip6tables-config: Cannot write: No space left on device
tar: ./etc/sysconfig/iptables-config: Cannot write: No space left on device
tar: ./etc/xtables/connlabel.conf: Cannot write: No space left on device
tar: ./usr/share/info/dir: Cannot write: No space left on device
tar: ./etc/groff/site-tmac/man.local: Cannot write: No space left on device
tar: ./etc/groff/site-tmac/mdoc.local: Cannot write: No space left on device
tar: ./etc/default/nss: Cannot write:...
2015 Jul 03
1
Re: libguestfs error: need help troubleshooting
.../etc/security/pwquality.conf: Cannot write: No space left on device
tar: ./etc/krb5.conf: Cannot write: No space left on device
tar: ./etc/sysconfig/ip6tables-config: Cannot write: No space left on device
tar: ./etc/sysconfig/iptables-config: Cannot write: No space left on device
tar: ./etc/xtables/connlabel.conf: Cannot write: No space left on device
tar: ./usr/share/info/dir: Cannot write: No space left on device
tar: ./etc/groff/site-tmac/man.local: Cannot write: No space left on device
tar: ./etc/groff/site-tmac/mdoc.local: Cannot write: No space left on device
tar: ./etc/default/nss: Cannot write:...
2015 Dec 18
0
[ANNOUNCE] iptables 1.6.0 release
Hi!
The Netfilter project proudly presents:
        iptables 1.6.0
This release includes accumulated fixes and enhancements for the
following matches:
* ah
* connlabel
* cgroup
* devgroup
* dst
* icmp6
* ipcomp
* ipv6header
* quota
* set
* socket
* string
and targets:
* CT
* REJECT
* SET
* SNAT
* SNPT,DNPT
* SYNPROXY
* TEE
We also got rid of the very very old MIRROR and SAME targets and the
unclean match, that were removed from the kernel tree long time ago.
W...