Commit Graph

25 Commits (234660e94d0b887aef8ae11d7826420de30a9bef)

Author SHA1 Message Date
sebres 3d7e3bc2fb make ipset actions more breakdown-safe: start wouldn't fail if set with this name already exists (e. g. created by previous instance and don't deleted properly)
3 years ago
sebres 80805cabfc Merge branch '0.11'
3 years ago
sebres 0b3ad780fe Merge branch '0.10' into 0.11
3 years ago
sebres 4b54a07d71 Revert "`action.d/firewallcmd-*.conf` (multiport only): fixed port range selector, replacing `:` with `-`;"
3 years ago
sebres c7a86b4616 action.d/firewallcmd-ipset.conf: amend to #2620:
4 years ago
sebres 74b73bce8a Merge branch '0.10' into 0.11
4 years ago
sebres a038fd5dfe `action.d/firewallcmd-*.conf` (multiport only): fixed port range selector, replacing `:` with `-`;
4 years ago
sebres 067b76fc9e Merge branch '0.10' into 0.11
4 years ago
sebres 73a8175bb0 resolves names conflict (command action timeout and ipset timeout); closes gh-2790
4 years ago
sebres 1588200274 Merge branch '0.10' into 0.11
5 years ago
sebres 87a1a2f1a1 action.d/*-ipset*.conf: several ipset actions fixed (no timeout per default anymore), so no discrepancy between ipset and fail2ban (removal from ipset will be managed by fail2ban only)
5 years ago
sebres 0e68c9a720 Merge branch '0.10' into 0.11
7 years ago
sebres c30144b37a Merge branch '0.9' into 0.10
7 years ago
sebres 131b94e11e firewallcmd-ipset-allports: implemented in `action.d/firewallcmd-ipset.conf` now (`action.d/firewallcmd-ipset-allports.conf` removed), usage:
7 years ago
sebres 5028f17f64 Merge branch '0.10' into 0.11, rewrite updateDb because it can be executed after repair, and some tables can be missing.
7 years ago
sebres 309a1cb337 restore timeout for ipset-based actions: on some systems ipset created without default timeout may cause "Kernel error received: Unknown error -1" (gh-1994);
7 years ago
sebres 6ccaa03e00 action.d/firewallcmd-ipset.conf: extended with actionflush to bulk unban resp. flush ipset
7 years ago
sebres 7e5d8f37fd Merge branch '0.10' into 0.11
7 years ago
sebres e384acca5f action.d/firewallcmd-ipset.conf: fixed create of set for ipv6 (missing `family inet6`)
7 years ago
sebres c21b4e4d56 [ban-time-incr] prolong ban, dynamic bantime, etc.:
8 years ago
sebres 0c44ecfc77 action.d/firewallcmd-ipset.conf: different name of the match set's for IPv4/IPv6, using conditional <ipmset>, analog to the iptables-ipset;
9 years ago
TorontoMedia 7e54cee8d6 updated firewallcmd actions
9 years ago
SATO Kentaro 65ff3e9604 ENH: Introduce iptables-common.conf.
11 years ago
Daniel Black ca57427080 BF: firewallcmd-ipset had non-working actioncheck
11 years ago
Daniel Black 9fe0a69852 ENH: add firewallcmd-ipset
11 years ago