1
iptables v1.2.8 Changelog
2
======================================================================
3
This version requires kernel >= 2.4.4
4
This version recommends kernel >= 2.4.18
6
Bugs Fixed from 1.2.7a:
8
- fix ip6tables-save function of 'length' match
10
- fix ip6tables-save function of 'mac' match
11
[ Kristian Gronfeldt Sorensen ]
12
- fix iptables-save function of 'ULOG' target
14
- fix iptables-save function of 'conntrack' match
16
- fix iptables-save function of 'length' match
18
- fix iptables-save function of 'mac' match
19
[ Kristian Gronfeldt Sorense ]
20
- fix iptables-save function of 'mark' match
22
- fix iptables-save function of 'owner' match
24
- fix iptables-save function of 'pool' match
26
- fix iptables-save function of 'tcpmss' match
28
- fix iptables-save function of 'tos' match
30
- fix save/print function of 'connmark' match
32
- fix error message when invalid TCP flag is specified with 'tcp' match
37
- updated version of the ROUTE target
39
- updated version of the 'recent' match
41
- update the RPC conntrack match, extend it to support filtering on procedures
42
[ Ian (Larry) Latter ]
43
- add support for hexstrings to the 'string' match
45
- have iptables-restore print the line number in case of an error
47
- big iptables.8 manpage update
49
- print loglevel human-readable in ip6tables 'LOG' target
51
- print loglevel human-readable in 'LOG' target
53
- remove bogus code from 'ecn' match
54
[ Stephane Ouellette ]
55
- be more specific in help message of 'helper' match
57
- fix semantic problem that '-p icmp -m icmp' was matching icmp type 0 instead
60
- fix iptables rename-chain option
62
- remove libipulog from iptables since it is distributed with ulogd
64
- support new ip6tables 'HL' target
66
- support new ip6tables 'condition' match
67
[ Stephane Ouellette ]
68
- support new ip6tables 'fuzzy' match
70
- support new ip6tables 'hoplimit' match
72
- support new iptables 'CLASSIFY' target
74
- support new iptables TARPIT target
76
- support new iptables 'condition' match
77
[ Stephane Ouellette ]
78
- support new iptables 'fuzzy' match
80
- support new iptables 'physdev' match (for 2.5.x bridging)
82
- support new iptables 'u32' match (based on u32 tc filter)
85
Please note: As of version 1.2.7a, patch-o-matic is now no longer part of
86
iptables but rather distributed as a seperate package
87
(ftp://ftp.netfilter.org/pub/patch-o-matic/)