| Commit message (Expand) | Author | Age | Files | Lines |
* | Fix #3106, parse 'not' rules right on destination for port forward + reflecti... | Renato Botelho | 2013-07-25 | 1 | -4/+5 |
* | remove auto-added allow rule for pfsync | Chris Buechler | 2013-05-17 | 1 | -1/+0 |
* | Use the process name rather to avoid the infamous file not found error | Warren Baker | 2013-03-08 | 1 | -3/+3 |
* | Merge improvements to filterdns daemon | Ermal | 2013-01-04 | 1 | -10/+10 |
* | Pass -S to tcpdump to avoid an increase in memory consumption over time. | jim-p | 2013-01-03 | 1 | -2/+2 |
* | Fix reference to limitrules | jim-p | 2012-10-04 | 1 | -1/+1 |
* | Make sure that the limits are included in the normal ruleset, otherwise pf wi... | smos | 2012-10-02 | 1 | -0/+1 |
* | Simplify schedules code and some styly nits | Ermal | 2012-08-30 | 1 | -33/+13 |
* | Be consistent on formatting to easy reading | Ermal | 2012-08-29 | 1 | -18/+21 |
* | Put configured limits on rules.limits file and load them before loading the r... | Ermal | 2012-06-11 | 1 | -34/+26 |
* | Wrong branch | Ermal | 2012-06-05 | 1 | -2/+0 |
* | Import OpenVPN cisco style radius attributes applying policy to logged in use... | Ermal | 2012-06-05 | 1 | -0/+2 |
* | Up the default for tables to 3000 | jim-p | 2012-05-29 | 1 | -4/+3 |
* | Add a knob to tune the maximum number of tables that can be defined, the pf d... | jim-p | 2012-05-29 | 1 | -5/+9 |
* | Switch to a common function to determine anti-lockout ports, and fix a bug th... | jim-p | 2012-05-25 | 1 | -13/+24 |
* | go back to scrub rather than "scrub in", the latter breaks MSS clamping for e... | Chris Buechler | 2012-04-23 | 1 | -3/+3 |
* | Add alias support to static routes (needs some testing) Ticket #2239 | jim-p | 2012-04-10 | 1 | -18/+19 |
* | Don't put an extra space here or later tests will fail to match this as a pas... | jim-p | 2012-03-14 | 1 | -1/+1 |
* | For nat reflection inetd rules, udp/dgram requires wait, instead of nowait/0.... | jim-p | 2012-02-22 | 1 | -1/+3 |
* | Add nat rule if the target is in a subnet handled by a static route whose gat... | Erik Fonnesbeck | 2012-02-04 | 1 | -0/+12 |
* | Add static route subnets if their gateway is within the source subnet for the... | Erik Fonnesbeck | 2012-02-04 | 1 | -3/+15 |
* | Use the specific IP for NAT IP in filter_generate_reflection_nat to prevent a... | Erik Fonnesbeck | 2012-02-04 | 1 | -3/+20 |
* | Only add these lines if there is both an IP address and CIDR. Fixes #1882 | Erik Fonnesbeck | 2012-01-20 | 1 | -4/+6 |
* | Respect the value of the per-rule "disable reply-to" checkbox. | jim-p | 2012-01-10 | 1 | -1/+1 |
* | Add a checkbox that disabled automatically generates negate rules for directl... | smos | 2011-12-20 | 1 | -1/+1 |
* | until 2.0.1 is tagged, Revert "Add a checkbox that disabled automatically gen...RELENG_2_0_1 | Chris Buechler | 2011-12-20 | 1 | -1/+1 |
* | Add a checkbox that disabled automatically generates negate rules for directl... | smos | 2011-12-20 | 1 | -1/+1 |
* | Use quick on DHCP server rules. Should fix #2041 | jim-p | 2011-12-12 | 1 | -5/+5 |
* | Concatenate array, using array_merge() will clobber numerical gateway group e... | smos | 2011-11-27 | 1 | -1/+1 |
* | Shorten the NEGATE rule label as these are too long | smos | 2011-10-21 | 1 | -1/+1 |
* | Remove the old direct_networks table which is not used throughout the filter ... | smos | 2011-10-13 | 1 | -7/+20 |
* | Add no nat/rdr rules for carp protocol so people do not screw their setups. | Ermal | 2011-10-13 | 1 | -1/+3 |
* | Disable could not find gateway for FOO log message. It is not causing any tr... | Scott Ullrich | 2011-10-11 | 1 | -1/+1 |
* | Remove references to undeclared table | Ermal | 2011-09-07 | 1 | -4/+2 |
* | Revert "Make the webConfigurator lockout rule to catch even edp protocol so t... | Ermal | 2011-08-30 | 1 | -1/+1 |
* | Make the webConfigurator lockout rule to catch even edp protocol so that xmlr... | Ermal | 2011-08-30 | 1 | -1/+1 |
* | Fix VPN network listing for OpenVPN, and also add tunnel networks to this list. | jim-p | 2011-08-24 | 1 | -2/+5 |
* | Revert "Make initial changes to allow pfSense to work in a jail." | Andrew Thompson | 2011-08-17 | 1 | -2/+0 |
* | Make initial changes to allow pfSense to work in a jail. | Andrew Thompson | 2011-08-17 | 1 | -0/+2 |
* | Resolves #1731. Correctly handle nested alias that have hostnames. While here... | Ermal | 2011-08-15 | 1 | -2/+4 |
* | Revert "Feature#1603. URL table aliases should be usable within network type ... | Ermal | 2011-08-15 | 1 | -20/+1 |
* | Revert "Feature #1603. Correct nested urltable alias code to be more fullproo... | Ermal | 2011-08-15 | 1 | -12/+15 |
* | Add yet another intermediate config write during pacakge processing which bre... | Ermal | 2011-08-03 | 1 | -2/+0 |
* | Silence pfctl -d errors | Scott Ullrich | 2011-07-29 | 1 | -1/+1 |
* | Do not add any reply-to information to rules with action match. Reported-by: ... | Ermal | 2011-07-28 | 1 | -1/+1 |
* | Prevent php from coring if the wrong parameters are passed to ip2long | Ermal | 2011-07-27 | 1 | -2/+11 |
* | Add a flag that defaults to on allowing the control of delete states from ext... | Scott Ullrich | 2011-07-25 | 1 | -3/+5 |
* | Ticket #1552. Do not allow route-to to be set on block/reject rules for now. ... | Ermal | 2011-07-15 | 1 | -1/+1 |
* | Actually do pass an argument for second -b to avoid matching more tha suppose... | Ermal | 2011-07-06 | 1 | -0/+2 |
* | Ticket #1646. Put netmasks of /32 to the parameters of pfctl -b to avoid that... | Ermal | 2011-07-06 | 1 | -2/+2 |