Hot on the heals of 4.5.0:

----------------------------------------------------------------------------
          P R O B L E M S   C O R R E C T E D   I N   4 . 5 . 1
----------------------------------------------------------------------------

1)  A syntax error in /sbin/shorewall was corrected.

2)  Previously, specifying an ICMP type in the PORT(S) column of tcpri
    would result in a compilation error.

3)  Previously, the 'save' command failed when DYNAMIC_BLACKLIST=No.

4)  Automatic assignment of provider mark values didn't work when
    PROVIDER_OFFSET > 0.

----------------------------------------------------------------------------
             K N O W N   P R O B L E M S   R E M A I N I N G
----------------------------------------------------------------------------

None.

----------------------------------------------------------------------------
                N E W   F E A T U R E S   I N   4 . 5 . 1
----------------------------------------------------------------------------

1)  You may now restrict the output of 'show tc' by specifying the name
    of an interface (e.g., "show tc eth0").

2)  COMMENT lines are now allowed in 
/etc/shorewall/tcpri.----------------------------------------------------------------------------
          P R O B L E M S   C O R R E C T E D   I N   4 . 5 . 1
----------------------------------------------------------------------------

1)  A syntax error in /sbin/shorewall was corrected.

2)  Previously, specifying an ICMP type in the PORT(S) column of tcpri
    would result in a compilation error.

3)  Previously, the 'save' command failed when DYNAMIC_BLACKLIST=No.

4)  Automatic assignment of provider mark values didn't work when
    PROVIDER_OFFSET > 0.

----------------------------------------------------------------------------
             K N O W N   P R O B L E M S   R E M A I N I N G
----------------------------------------------------------------------------

None.

----------------------------------------------------------------------------
                N E W   F E A T U R E S   I N   4 . 5 . 1
----------------------------------------------------------------------------

1)  You may now restrict the output of 'show tc' by specifying the name
    of an interface (e.g., "show tc eth0").

2)  COMMENT lines are now allowed in /etc/shorewall/tcpri.

3)  Additional optimization is enabled when OPTIMIZE=2 or
    OPTIMIZE=3. Chains that contain nothing but rules with ACCEPT
    targets or that contain a single jump are now optimized away.

4)  The '4' bit in the OPTIMIZE option now enables additional
    optimizations:

    a) Empty filter chains are optimized away.
    b) Filter chains with one rule are optimized away.

    The following chains are exempted from optimization:

        dynamic
        logdrop
        logreject
        forwardUPnP

5)  The PROTO column in /etc/shorewall/tcpri may now contain
    'ipp2p'. When such an entry is present AND PROVIDER_OFFSET is
    non-zero, Shorewall will automatically generate SAVE/RESTORE rules
    for the POSTROUTING chain.



3)  Additional optimization is enabled when OPTIMIZE=2 or
    OPTIMIZE=3. Chains that contain nothing but rules with ACCEPT
    targets or that contain a single jump are now optimized away.

4)  The '4' bit in the OPTIMIZE option now enables additional
    optimizations:

    a) Empty filter chains are optimized away.
    b) Filter chains with one rule are optimized away.

    The following chains are exempted from optimization:

        dynamic
        logdrop
        logreject
        forwardUPnP

5)  The PROTO column in /etc/shorewall/tcpri may now contain
    'ipp2p'. When such an entry is present AND PROVIDER_OFFSET is
    non-zero, Shorewall will automatically generate SAVE/RESTORE rules
    for the POSTROUTING chain.

-Tom
-- 
Tom Eastep        \ When I die, I want to go like my Grandfather who
Shoreline,         \ died peacefully in his sleep. Not screaming like
Washington, USA     \ all of the passengers in his car
http://shorewall.net \________________________________________________

Attachment: signature.asc
Description: PGP signature

------------------------------------------------------------------------------
This SF.Net email is sponsored by the Verizon Developer Community
Take advantage of Verizon's best-in-class app development support
A streamlined, 14 day to market process makes app distribution fast and easy
Join now and get one step closer to millions of Verizon customers
http://p.sf.net/sfu/verizon-dev2dev 
_______________________________________________
Shorewall-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-devel

Reply via email to