From b158752a99f1983b3c49fec9d46230043f31a618 Mon Sep 17 00:00:00 2001 From: Vadim Kurland Date: Sat, 19 Mar 2011 18:26:59 -0700 Subject: [PATCH] see #2240 changelog record --- doc/ChangeLog | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/doc/ChangeLog b/doc/ChangeLog index be5473428..06cb8c8d3 100644 --- a/doc/ChangeLog +++ b/doc/ChangeLog @@ -1,5 +1,17 @@ 2011-03-19 vadim + * objectMaker.cpp (findMatchingObject): see #2240 better + deduplication algorithm on import: we consider objects created + from in-line address/netmask and port specifications found inside + object-group, access-list, filter or nat commands "anonymous" + objects. These objects get automatically generated names and are + deduplicated using only their relevant attributes but not names. + Objects created from pix named object ("object network foo", + "object service bar") statements are considered "named" + objects. They get the name matching the name in corresponding pix + config line and are deduplicated using both relevant attributes + and the name. + * IPTImporter.cpp (pushPolicyRule): change in the importer behavior: configuration import is aborted with an appropriate error message in the log when program enounters protocol or