A firewall service daemon with D-BUS interface managing a dynamic firewall

Edit Package firewalld

firewalld provides a dynamically managed firewall with support for network/firewall zones to define the trust level of network connections or interfaces. It has support for IPv4, IPv6 firewall settings and for ethernet bridges and has a separation of runtime and permanent configuration options. It also supports an interface for services or applications to add firewall rules directly.

Refresh
Refresh
Source Files
Filename Size Changed
0002-Disable-FlushAllOnReload-option.patch 0000002276 2.22 KB
docker-zone.xml 0000000191 191 Bytes
firewalld-2.0.1.tar.bz2 0001257251 1.2 MB
firewalld.changes 0000053663 52.4 KB
firewalld.spec 0000013479 13.2 KB
Latest Revision
Ruediger Oertel's avatar Ruediger Oertel (oertel) committed (revision 6)
This is an identical resubmission of SR#309102, that has been removed
due to bsc#1216534. 

- update to v2.0.1 (jsc#PED-5597)
* fix(cli): all --list-all-zones output identical (d30bc61)
  * fix(cli): properly show default zone attribute (ea8d9a8)
  * fix(cli): properly show active attribute for zones and policies (b202403)
  * fix(cli): --get-active-zones should include the default zone (dae9112)
  * fix(nftables): always flush main table on start (cd20981)
  * fix(runtimeToPermanent): deepcopy settings before mangling (9c53639)
  * docs: fix reference to lockdown-whitelist.xml in SYNOPSIS section (1c77205)
  * fix(firewall-config): escape markup stored in bindings store (c876fd0)
  * fix(tests): avoid deprecated assertRaisesRegexp for assertRaisesRegex (2935119)
  * fix(icmp): fix check_icmpv6_name() to use correct IPv6 names (af3c35b)
  * fix(ipset): fix configuring IP range for ipsets with nftables (6a050ec)
  * fix(ipset): fix configuring "timeout","maxelem" values for ipsets with nftables (7d3340c)
  * fix(core): fix exception while parsing invalid "tcp-mss-clamp" in policy (ff61209)
  * docs(policy): fix wrong documentation of in man firewalld.policy (21026d9)
  * Correct Requires, python3-slip-dbus -> python3-dbus-python 
  * This is a major release. The major version is being bumped symbolically
    to reflect significant changes done in commit f4d2b80 ("fix(policy):
    disallow zone drifting"). It does not contain any deliberate breaking changes
  * fix(reload): restore policy for old backend if it changed (de85849)
  * fix(io): rich: tcp mss: handle value=None (8016f10)
  * fix(firewall-config): rich: set destination address (f6641a9)
  * fix(policy): mixed IP families in ingress/egress (69ed4d6)
- removed following patches:
  [- 0001-chore-fw_zone-call-permanent-config-checks-at-runtim.patch]
  [- 0003-firewall-offline-cmd-fail-fix.patch]
  [- 0004-fix_rich_source_address_with_netmask.patch]
  [- feature-upstream-new-check-config-1.patch]
  [- feature-upstream-new-check-config-2.patch]
Comments 0
openSUSE Build Service is sponsored by