aboutsummaryrefslogtreecommitdiffstats
Commit message (Collapse)AuthorAgeFilesLines
* pfBlocker allow list ranges that are not exact subnetsPhil Davis2013-03-281-27/+6
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | | Fixes #2892 I made a "nasty" list as follows: 192.168.100.0-192.168.101.255 192.168.103.8-192.168.103.23 192.168.104.1-192.168.104.254 192.168.105.22-192.168.106.66 192.168.107.3-192.168.107.33 And this code turns it into: 192.168.100.0/23 192.168.103.8/29 192.168.103.16/29 192.168.104.1/32 192.168.104.2/31 192.168.104.4/30 192.168.104.8/29 192.168.104.16/28 192.168.104.32/27 192.168.104.64/26 192.168.104.128/26 192.168.104.192/27 192.168.104.224/28 192.168.104.240/29 192.168.104.248/30 192.168.104.252/31 192.168.104.254/32 192.168.105.22/31 192.168.105.24/29 192.168.105.32/27 192.168.105.64/26 192.168.105.128/25 192.168.106.0/26 192.168.106.64/31 192.168.106.66/32 192.168.107.3/32 192.168.107.4/30 192.168.107.8/29 192.168.107.16/28 192.168.107.32/31 Which is the correct group of CIDRs to represent the given ranges.
* Correct permission otherwise openbgpd does not startErmal2013-03-281-2/+2
|
* Correctly write config file and also properly avoid php errors with some ↵Ermal2013-03-281-22/+24
| | | | extra safety belts
* Do not make mandatory the local addr but use the listenip if local address ↵Ermal2013-03-282-2/+12
| | | | is not set to easy configuration same as was previously done with setkey
* No need anymore for the setkey commandErmal2013-03-281-32/+6
|
* Actually the md5sigkey is directly given in hex revert partially previous commitErmal2013-03-271-10/+4
|
* Correctly generate the hex value needed for md5sigkey value. Use correct ↵Ermal2013-03-271-13/+15
| | | | permissions for configuration file when generating
* Merge pull request #414 from PiBa-NL/haproxy-devel-2.1Jim P2013-03-264-25/+67
|\ | | | | advanced bind options, extended username/password characters+escaping, c...
| * advanced bind options, extended username/password characters+escaping, ↵PiBa-NL2013-03-274-25/+67
| | | | | | | | change deprecated options to current equivalents, changed nbproc default to 1, for better (default settings) compatibility with other options.
* | Disconnect snort-dev from the package lists since it gives problems on ↵Ermal2013-03-262-76/+0
| | | | | | | | rebuilding snort and snort-dev due to different binary requirements
* | Merge pull request #412 from bmeeks8/masterChris Buechler2013-03-221-1/+2
|\ \ | | | | | | Fix logic bug in preproc auto-rule-disable so it skips already disabled rules
| * | Fix preproc auto-rule disable to skip disabled rules.bmeeks82013-03-221-1/+2
| | |
* | | Merge pull request #411 from bmeeks8/masterJim P2013-03-211-1/+1
|\| | | | | | | | Fix VRT rules tarball filename so 2.9.4.1 rules download instead of 2.9.4.0
| * | Set correct VRT Rules tarball for Snort 2.9.4.1bmeeks82013-03-211-1/+1
|/ /
* | Fix binary names for snort depsjim-p2013-03-212-4/+4
| |
* | Move to latest available rulesetsErmal2013-03-211-3/+3
| |
* | Correct the package name. To many 1Ermal2013-03-212-2/+2
| |
* | Use the newer snort port version 2.9.4.1Ermal2013-03-212-20/+20
| |
* | Rename function to not clash with pfsense oneErmal2013-03-191-3/+3
| |
* | Merge pull request #410 from PiBa-NL/haproxy-devel-2.1Jim P2013-03-166-65/+114
|\| | | | | haproxy-devel, removed cert filtering, server options, fixed saving global advanced setting.
| * haproxy-develPiBa-NL2013-03-166-65/+114
| | | | | | | | | | | | | | -allow advanced configuration like a cookie per backend-server -show if ACLs have been used in the overview -fixed global advanced option saving -show all certificates, as filtering server certs didn't work properly..
* | Merge pull request #409 from PiBa-NL/systempatches_htmlspecialcharsJim P2013-03-151-1/+1
|\ \ | | | | | | systempatches, fix editing patch containing html code using: htmlspecialchars
| * | systempatches, fix editing patch containing html code using: htmlspecialcharsPiBa-NL2013-03-151-1/+1
| | |
* | | Correct descpritonErmal2013-03-151-2/+2
| | |
* | | Merge pull request #408 from phil-davis/masterJim P2013-03-142-7/+37
|\ \ \ | | | | | | | | bandwidthd - rotate log files when output_cdf is enabled
| * | | bandwidthd - rotate log files when output_cdf is enabledPhil Davis2013-03-151-5/+21
| | | | | | | | | | | | Improve the documentation of options on the GUI, including what happens when output_cdf is on.
| * | | bandwidthd - rotate log files when output_cdf is enabledPhil Davis2013-03-151-2/+16
|/ / /
* | | Merge pull request #407 from PiBa-NL/haproxy-devel-2.1Jim P2013-03-144-112/+287
|\ \ \ | | |/ | |/| haproxy-devel, made frontend merging hide more irrelevant settings
| * | haproxy-devel, made frontend merging in such a way that it is more obvious ↵PiBa-NL2013-03-144-112/+287
| | | | | | | | | | | | that a lot of settings are not needed for 'secondary' frontends.
* | | Merge pull request #406 from phil-davis/masterJim P2013-03-131-1/+6
|\ \ \ | | | | | | | | bandwidthd on nanobsd - put legend and logo files in place
| * | | bandwidthd on nanobsd - put logo and legend files in placePhil Davis2013-03-131-1/+6
|/ / / | | | | | | legend.gif and logo.gif were missing from the report/graph page. They need to be put in /var/bandwidthd/htdocs
* | | Merge pull request #405 from phil-davis/masterJim P2013-03-132-4/+4
|\ \ \ | | | | | | | | Update bandwidthd pkg to 2.0.1_5
| * | | bandwidthd-2.0.1_5 version updatePhil Davis2013-03-101-2/+2
| | | |
| * | | bandwidthd-2.0.1_5 version updatePhil Davis2013-03-101-2/+2
| | | |
* | | | bump system patches package after repo URL changeChris Buechler2013-03-112-2/+2
| | | |
* | | | update repo locationChris Buechler2013-03-113-5/+5
|/ / /
* | | Merge pull request #404 from PiBa-NL/haproxy-devel-2.1Jim P2013-03-083-12/+49
|\| | | | | | | | haproxy-devel, small bugfixes.. ssl checkbox selection, no httpcheck, req_ssl_hello_type
| * | haproxy-devel, small bugfixes.. maintain ssl checkbox selection, dont use ↵PiBa-NL2013-03-093-12/+49
| | | | | | | | | | | | httpcheck for ssl backends, use req_ssl_hello_type for https with SNI acl's.
* | | Merge pull request #403 from PiBa-NL/haproxy-devel-2.1Jim P2013-03-073-63/+90
|\| | | | | | | | haproxy-devel, ssl backend support, X-Forwarded-Proto, server backup/inactive, certificate purpose check
| * | haproxy-devel, ssl backend support, X-Forwarded-Proto, server states ↵PiBa-NL2013-03-083-63/+90
| | | | | | | | | | | | active/backup/disabled/inactive, certificate purpose show 'server certs' only.
* | | Update Open-VM-Tools binary pathsjim-p2013-03-062-22/+22
| | |
* | | Merge pull request #401 from PiBa-NL/haproxy-devel-2.1Ermal Luçi2013-03-058-42/+96
|\| | | |/ |/| Haproxy-devel, require pfSense 2.1, shared ssloffloading, error checking
| * haproxy-devel,PiBa-NL2013-03-066-36/+89
| | | | | | | | | | -allow shared frontend with SSL offloading -error checking+reporting to user while applying configuration.
| * haproxy-devel, enable ssl selection box.PiBa-NL2013-03-051-4/+5
| |
| * haproxy-devel, make pfSense 2.1 the minimum required version.PiBa-NL2013-03-052-2/+2
|/
* Change this quagga command order back, as it appears to be invalid syntax.jim-p2013-03-054-4/+4
|
* Fix typojim-p2013-03-051-1/+1
|
* Merge pull request #399 from hoerup/masterJim P2013-03-041-2/+2
|\ | | | | haproxy-devel: another minor change just to make it work for now
| * this currently fails so disable for nowTorben Nielsen2013-03-041-2/+2
| |
* | Merge pull request #398 from hoerup/masterJim P2013-03-042-9/+42
|\| | | | | haproxy-devel: add various missing elements