summaryrefslogtreecommitdiffstats
path: root/usr/local/www/firewall_rules_edit.php
Commit message (Collapse)AuthorAgeFilesLines
* Display gateways with matching IP protocol in Gateways listPhil Davis2013-01-081-2/+2
| | | | Some gateways do not have traditional addresses hard-coded into them - e.g. for OpenVPN dynamic gateways are created in software on-the-fly (they are not actually entries in the config). So traditional tests like is_ipaddrv4 are not useful to determine if the gateway is IPv4 or IPv6. return_gateways_array() fills in an "ipprotocol" entry for each returned gateway ("inet" or "inet6"), as well as the "gateway" address field. This can be used to determine if the gateway is for IPv4 or IPv6.
* Fixes #1575. Allow Match option to be used with limiters as well. The ↵Ermal2012-11-271-4/+1
| | | | support is there in kernel so allow rules to be configured on this.
* To allow limiters to work correctly on mutliwan for now enforce selecting a ↵Ermal2012-11-161-0/+2
| | | | gateway on outgoing
* Encode the interface parameter before using it in a redirectjim-p2012-10-311-1/+1
|
* Fix warning when no gateway groupsPhil Davis2012-10-241-15/+17
| | | If there are no gateway groups defined, and you save a rule that has an ordinary gateway selected in "Advanced Features - Gateway", then a warning is emitted when trying to traverse an empty gateway groups array at line 214.
* Refine saving/applying on more pages - don't show apply or take an action ↵jim-p2012-10-091-2/+1
| | | | unless the user is allowed to do that.
* Don't offer to apply changes if no changes actually happened.jim-p2012-10-091-2/+3
|
* remove bunk input validationChris Buechler2012-09-091-3/+0
|
* Activate new shortcuts/status in the rest of the areas that are currently setup.jim-p2012-08-101-2/+1
|
* Fixes #2428. Reference limiters in rules by name to avoid issues. Also put ↵Ermal2012-06-011-13/+13
| | | | upgrade code for existing configs. The same fix is necessary for 2.0.x though not sure how this should be committed there.
* Add a inet46 filter type on the firewall rules page. I have locked down a ↵smos2012-05-311-1/+23
| | | | | | | few of the most common limitations. Still arguing if we should lock this down even further to aliases only. Redmine ticket #2466
* Properly test for the address family now that the array says what it's ↵smos2012-05-211-4/+7
| | | | supposed to be.
* Fix of bug #2374 "When entering values in firewall rules leading andCristian Feldman2012-05-181-13/+15
| | | | trailing spaces are not deleted"
* Allow 802.1p tags to be controlled from firewall rules edit screenErmal2012-05-181-0/+41
|
* cleanup: code for building arrays for autocompleted fieldsDarren Embry2012-05-101-31/+4
|
* Fix preservation of the selection of interfaces on input errors for floating ↵Erik Fonnesbeck2012-04-271-0/+2
| | | | rules.
* feature #2320: JS helper to toggle subnet mask for ipv4/v6 during inputDarren Embry2012-03-281-0/+1
| | | | http://redmine.pfsense.org/issues/2320
* prep work for feature #2320: tag for ipv4v6 fieldsDarren Embry2012-03-281-4/+4
|
* now we use the Chosen javascript plugin for jQueryVinicius Coque2011-11-151-1/+1
|
* Add a check to prevent this gateway code from triggering the address family ↵Seth Mos2011-10-181-1/+1
| | | | check. This might not be all that is needed for Ticket #1949
* Unbreak the firewall rule Edit page, input error array was unset halfway the ↵Seth Mos2011-08-241-1/+25
| | | | | | validation. Set that back up ontop. Add gateway validation
* Catch another possiblity for invalid rule generationSeth Mos2011-08-241-0/+4
|
* Properly fix the address family check for gateway groups Ticket #1659Seth Mos2011-08-241-2/+3
|
* Unbreak firewall rules edit, missing a )Seth Mos2011-08-241-1/+1
|
* Add address family validation, also hide gateways or gateway groups from the ↵Seth Mos2011-08-241-2/+15
| | | | | | gateway list. Fix Ticket #1659
* Add chosen js library (mit lic). Modify interface multiple select box to use.Scott Ullrich2011-07-231-2/+3
|
* Adding pre_input_errors hookScott Ullrich2011-07-181-0/+1
|
* Revert "Move early call up a bit"Scott Ullrich2011-07-181-3/+4
| | | | This reverts commit 35843e59c81366a7d30a44a94c8a135fc6834454.
* Move early call up a bitScott Ullrich2011-07-181-4/+3
|
* Adding hook for interfaces allowing pfCenter and friends to add interfaces ↵Scott Ullrich2011-07-161-1/+3
| | | | to the dropdown
* Merge remote-tracking branch 'upstream/master'jim-p2011-07-121-0/+20
|\ | | | | | | | | | | | | | | | | | | | | Conflicts: etc/inc/easyrule.inc etc/inc/filter.inc etc/inc/interfaces.inc etc/inc/services.inc etc/inc/xmlrpc_client.inc usr/local/www/fbegin.inc usr/local/www/services_dhcp.php
| * Bug #1639. Port alias missing input validation in firewall_rules_edit.php.Evgeny Yurchenko2011-07-071-0/+20
| |
* | Merge remote branch 'upstream/master'jim-p2011-06-271-4/+4
|\ \ | |/
| * Be consistent with upper and lowercase.Warren Baker2011-06-271-4/+4
| |
* | Merge remote branch 'upstream/master'jim-p2011-06-011-1/+1
|\ \ | |/
| * Make the ICMP echo request type less ambiguous, and since it's likely the ↵jim-p2011-06-011-1/+1
| | | | | | | | main one to get used, move it to the top.
* | Merge remote branch 'upstream/master'jim-p2011-06-011-13/+15
|\ \ | |/ | | | | | | | | | | | | | | | | Conflicts: conf.default/config.xml etc/inc/filter.inc etc/inc/globals.inc etc/inc/pfsense-utils.inc etc/inc/upgrade_config.inc usr/local/www/interfaces.php
| * Remove bogus protection. We have better handling of this now.Scott Ullrich2011-05-311-13/+0
| |
| * Add missing plugin code. Move the pre_write section up a bit.Scott Ullrich2011-05-301-3/+3
| |
| * Adding a new hook system for firewall nat edit and firewall rules edit page.Scott Ullrich2011-05-251-0/+15
| | | | | | | | | | | | | | | | | | | | | | | | | | | | Basically if the directory exists it will suck in the files to extend these pags. /usr/local/pkg/firewall_nat/input_validation /usr/local/pkg/firewall_nat/pre_write_config /usr/local/pkg/firewall_nat/htmlphpearly /usr/local/pkg/firewall_nat/htmlphplate /usr/local/pkg/firewall_rules/input_validation /usr/local/pkg/firewall_rules/pre_write_config /usr/local/pkg/firewall_rules/htmlphpearly /usr/local/pkg/firewall_rules/htmlphplate
* | Merge remote branch 'upstream/master'Seth Mos2011-04-121-1/+1
|\ \ | |/ | | | | | | | | Conflicts: etc/inc/filter.inc usr/local/www/themes/the_wall/rrdcolors.inc.php
| * In IPsec, s/mobileclients/client/, this was changed long ago in the config ↵jim-p2011-03-281-1/+1
| | | | | | | | but not everywhere followed.
* | Resolve merge conflictScott Ullrich2011-03-061-2/+8
|\ \ | |/
| * Show friendly names of interface for root queues of ALTQ.Ermal2011-03-021-2/+8
| |
* | Merge remote branch 'upstream/master'Seth Mos2011-02-231-1/+1
|\ \ | |/ | | | | | | | | Conflicts: etc/inc/filter.inc etc/inc/vpn.inc
| * Fix typo/spacing issue. Resolves #1300jim-p2011-02-211-1/+1
| |
* | Merge remote branch 'upstream/master'Seth Mos2011-02-161-1/+1
|\ \ | |/
| * Use autocomplete='off' like all other fields that accept aliases, to prevent ↵Erik Fonnesbeck2011-02-131-1/+1
| | | | | | | | web browser auto-complete from covering up the alias list popup.
* | Catch upScott Ullrich2011-02-121-0/+6
|\ \ | |/
| * Allow match action on Floating rules and exposed it with name Queue. More ↵Ermal2011-02-111-0/+6
| | | | | | | | validation is needed.
OpenPOWER on IntegriCloud