Index | index by Group | index by Distribution | index by Vendor | index by creation date | index by Name | Mirrors | Help | Search |
Name: iptables-nft | Distribution: openSUSE Step 15 |
Version: 1.6.2 | Vendor: openSUSE |
Release: 1.1 | Build date: Tue Feb 2 12:02:16 2021 |
Group: Productivity/Networking/Security | Build host: armbuild01 |
Size: 170436 | Source RPM: iptables-1.6.2-1.1.src.rpm |
Packager: https://bugs.opensuse.org | |
Url: http://netfilter.org/projects/iptables/ | |
Summary: nft packet filter administration utilties in the style of Xtables |
The programs shipped in this subpackage behave like iptables on the command line, but instead edits the rules of the nft packet filter in the Linux kernel. Linux kernel 4.2 or newer is recommended to exploit the features.
GPL-2.0 and Artistic-2.0
* Mon Mar 12 2018 matthias.gerstner@suse.com - Fix ethertypes ownership, should be %exclude, not %ghost. * Thu Feb 22 2018 matthias.gerstner@suse.com - Resolve conflict with ebtables and obtain ethertypes from new netcfg minor version. FATE#320520 * Sat Feb 03 2018 jengelh@inai.de - Update to new upstream release 1.6.2 * add support for the "srh" match * add randomize-full for the "MASQUERADE" target * add rate match mode to the "hashlimit" match * Thu Jun 22 2017 matthias.gerstner@suse.com - Add iptables-batch-lock.patch: Fix a locking issue of iptables-batch which can cause it to spuriously fail when other programs modify the iptables rules in parallel (bnc#1045130). This can especially affect SuSEfirewall2 during startup. * Fri Jan 27 2017 jengelh@inai.de - Update to new upstream release 1.6.1 * add support for hashlimit rev 2 for higher pps rates * add support for cgroup2 path matching * translation program for nft * Fri Dec 18 2015 jengelh@inai.de - Update to final release 1.6.0 * Only a build fix, no new significant changes. * Mon Nov 23 2015 jengelh@inai.de - Update to new snapshot v1.4.21-367-g9763347 [1.6.0~] * -m ah/esp/rt: restore matching "any SPI id" by default (they unexpectedly defaulted to --spi 0 rather than --spi ALL) * -m cgroup: new module * -m dst: make ! --dst-len work * -m ipcomp: new module * -m socket: add --restore-skmark option * -j CT: add support for new zone options * -j REJECT: add missing ICMPv6 codes * -j TEE: make it possible to delete rules with -D ... -j * -j SNAT/DNAT: add randomize-full support * Thu Apr 24 2014 dmueller@suse.com - remove dependency on gpg-offline (blocks rebuilds and tarball integrity is checked by source-validator anyway) * Wed Apr 23 2014 dmueller@suse.com - remove dependency on sgmltool: doesn't seem to be used and reduces rebuild time on aarch64 by 8 hours * Sat Nov 23 2013 jengelh@inai.de - Update to new upstream release 1.4.21 * --nowildcard option for xt_socket, available since Linux kernel 3.11 * SYNPROXY support, available since Linux kernel 3.12
/usr/sbin/arptables-compat /usr/sbin/ebtables-compat /usr/sbin/ip6tables-compat /usr/sbin/ip6tables-compat-restore /usr/sbin/ip6tables-compat-save /usr/sbin/ip6tables-restore-translate /usr/sbin/ip6tables-translate /usr/sbin/iptables-compat /usr/sbin/iptables-compat-restore /usr/sbin/iptables-compat-save /usr/sbin/iptables-restore-translate /usr/sbin/iptables-translate /usr/sbin/xtables-compat-multi
Generated by rpm2html 1.8.1
Fabrice Bellet, Tue Apr 9 16:43:41 2024