Commit Graph
100 Commits
Author SHA1 Message Date
Vadim Kurland 2ea02ccf67 fixed #1693 , SF bug 3048516: "NAT rule with 'Use SNAT instead MASQ'
doesn't work".
2010-08-19 17:05:26 +00:00
Vadim Kurland 5718886174 * Helper.cpp (list): fixed #1691 , this is a better fix for the
problem reported in the earlier bug (see #1690).
Function Helper::findInterfaceByNetzone() throws FWException, this
changed in v4.1.0 with a fix for #1653.
2010-08-18 19:02:18 +00:00
Vadim Kurland 6f4a986273 * procurveInterfaces.cpp (procurveInterfaces::parseVlan): fixed #1683
class procurveInterfaces interprets interface "DEFAULT_VLAN" as
vlan interface with vlan id 1.
2010-08-18 02:49:40 +00:00
Vadim Kurland 42e3e6f445 * safety_net_acl: fixed #1687 "temporary access list commands
syntax is incorrect". Temporary ACL generated for the Procurve
platform was incorrect.
2010-08-18 01:14:14 +00:00
Vadim Kurland cfaf044212 * PolicyCompiler_cisco.cpp (PolicyCompiler_cisco::setAllNetworkZonesToAny):
fixed #1690 "IOS ACL and Procurve ACL compilers fail because
interfaces are not assumed to have network zone "any" anymore".
Compilers for Cisco IOS ACL and Procurve ACL always assumed all
interfaces have network zone "any". Recent changes made in 4.1.0
changed that and compilers stopped working for some rule configurations.

* (PolicyCompiler_cisco::createACLObject): fixed #1688 "Procurve
ACL remarks should be in quotes if they include space"
2010-08-17 20:32:45 +00:00
Vadim Kurland 59c53ed77d added new modules to unit tests guilib 2010-08-15 06:25:51 +00:00
Vadim Kurland 49020c33cd fixed copyright dates 2010-08-15 06:15:44 +00:00
Vadim Kurland d672e836f7 set version to 4.1.1; working implementation of policy installer for ProCurve 2010-08-15 06:12:52 +00:00
Vadim Kurland 21582f8755 updated copyright years and translations 2010-08-10 02:02:24 +00:00
Vadim Kurland 33d9b60640 removed "beta" from the release notes and added parencesis for readability 2010-08-09 19:02:36 +00:00
Vadim Kurland 9075c4a1e1 * ObjectManipulator_ops.cpp (ObjectManipulator::actuallyDeleteObject):
fixed #1674 "Crash while using Undo Stack". Operation "Cut" should be
represented by an undo macro object and should appear as one operation
on the undo stack.
2010-08-09 01:44:09 +00:00
Vadim Kurland 1ffc542e81 * ObjectManipulator.cpp (ObjectManipulator::getMenuState): fixed #1676
"Crash when deleting an interface that has multiple IP addresses
and not all addresses are selected for deletion"
2010-08-09 01:20:29 +00:00
Vadim Kurland 3ca271c2d8 fixed crash on Mac that happened when GUI started with a file as a command line argument. Need to clear current_tree_view in ObjectManipulator::clearObjects() 2010-08-06 18:21:22 +00:00
Vadim Kurland ab1513f38c fixed failing unit test 2010-08-06 02:40:23 +00:00
Vadim Kurland 4f43a0cce4 additional check for the condition that only seems to happen in unit tests 2010-08-06 01:42:27 +00:00
Vadim Kurland 549761d01a fix crash that only seems to happen in unit tests 2010-08-06 01:24:16 +00:00
Vadim Kurland f276dedd42 reset "dirty" flag in FWCmdChange when group is being changed 2010-08-06 00:56:57 +00:00
Vadim Kurland e7b0304560 fixed #1660 "Crash when
cut-and-pasting firewall between libraries". GUI crashed if user
performed the following sequence: cut an object, switch to a
different object library, try to paste using keyboard shortcut
Ctrl-V while library object was selected in the tree.
2010-08-05 23:51:14 +00:00
Vadim Kurland f3108a5696 include file properly 2010-08-05 07:02:21 +00:00
Vadim Kurland cbd2c00eb5 fixed #1664 "Policy
import creates firewall object w/o version". This also fixes
crash reported in SF bug #3036934
2010-08-05 01:55:49 +00:00
Vadim Kurland 767dc5034e fixed SF bug #3038945 "ASA inspect configurations not saved".
Under some circumstances the GUI did not save changes made in the
"Inspectors" tab of the PIX advanced settings dialog into the
object.
2010-08-05 01:11:46 +00:00
Vadim Kurland d314012466 fixes #1659 2010-08-04 21:40:02 +00:00
Vadim Kurland e95f8df3c8 fixed #1661 "Crash after deleting firewall" a sequence where user deleted
an object and then hit "Back" button caused crash.
2010-08-04 21:26:08 +00:00
Vadim Kurland 5bb1ac9c50 fixed SF bug 3038562 unknown dir in some ui files 2010-08-04 02:09:03 +00:00
Vadim Kurland e582034792 fixed SF bug #3038948
"ASA logging severity levels are incremented"
2010-08-04 01:49:07 +00:00
Vadim Kurland 0060ee84fa fixed SF bug3038636: support for the new syntax of ipv4options module 2010-08-04 01:36:30 +00:00
Vadim Kurland d27ae466b8 reverting r3193 2010-08-04 01:22:04 +00:00
Vadim Kurland de6dc9a56c fixed unit test 2010-08-03 02:37:28 +00:00
Vadim Kurland 769d0d926b * InterfaceDialog.cpp (loadFWObject): fixed #1657 "When no network
zone is defined on the interface, the Interface object editor says
it is "Any" which is a lie"
2010-08-03 02:34:09 +00:00
Vadim Kurland 0079bd7a24 fixed #1652 "support
for adding single address to address table in the generated
script"
2010-08-03 02:01:03 +00:00
Vadim Kurland a25846b73b updated release notes 2010-08-03 00:37:48 +00:00
Vadim Kurland 5fd5bb14ac * OSConfigurator_linux24.cpp (printRunTimeAddressTablesCode):
fixed #1654 "Support for run-time Address Tables with empty file
in iptables".
2010-08-03 00:33:54 +00:00
Vadim Kurland 38dd6420db fixing startTipDialogTest 2010-08-02 23:49:49 +00:00
Vadim Kurland 1f36ea00cd * Helper.cpp (findInterfaceByNetzone): fixed #1653 "Crash when
compiling a rule for Cisco PIX with incorrect network zone".
2010-08-02 22:29:06 +00:00
Vadim Kurland 914ffe8ded applied patch from slif@ to make file properties dialog appear with proper window decorations 2010-08-02 21:53:15 +00:00
Vadim Kurland 93eaec0513 changes for external new object checks 2010-08-02 03:23:12 +00:00
Vadim Kurland 637a2b3082 added new module to unit tests guilib.pro 2010-08-01 22:26:16 +00:00
Vadim Kurland 52a0435080 implemented support for additional checks for new objects for the future expansion 2010-08-01 22:05:59 +00:00
Vadim Kurland 24b2b690e1 fixed #1639 "Add success message to the bottom of the process log
for the installer".
2010-07-29 23:42:26 +00:00
Vadim Kurland 5efa16a76c GUI unit tests should not connect to the update.fwbuilder.org web site to check for updates, we test for that specifically in a special uni test 2010-07-29 20:05:27 +00:00
Vadim Kurland c83b04f36b Fixes SF bug #3036541 "IPV6
only firewall resets ipv4 stack" only reset ipv4 iptables when there are some ip4 rules; also added action block to usage string of the generated iptables script
2010-07-29 18:12:06 +00:00
Vadim Kurland 66683ebf92 better fix for SF bug 3035426; gui should save data to a file and not ask user if file name exists, it should only ask if file name has not been assigned 2010-07-29 02:19:06 +00:00
Vadim Kurland 89d504f639 better algorithm to find loops in rule branches and a test case for it for iptables; als fix for SF bug 3034628 "iptables does not allow target REJECT in mangle table" 2010-07-29 01:57:28 +00:00
Vadim Kurland 8acc9d455a added record to the release notes 2010-07-28 23:06:50 +00:00
Vadim Kurland 9b7334a61f fixed SF bug 3035426 "canceled
save writes .fwb ".
2010-07-28 23:05:08 +00:00
Vadim Kurland 3c6102f961 fixed #1631 "Process branch rule sets recursively".
fixed #1632 "dependencies created by branching rule sets should be
processed recursively"
fixed SF bug 3033462
2010-07-28 21:39:28 +00:00
Vadim Kurland a51d1733fc fixed #1640 "default policy when the script is stopped should be
optional".
2010-07-27 22:10:53 +00:00
Vadim Kurland 0e8bcac379 fixed #1634 - compiler warning 2010-07-27 21:23:05 +00:00
Vadim Kurland 1d81616677 fixed comment 2010-07-27 01:20:09 +00:00
Vadim Kurland 74063d35c3 implemented support for mixed address lists for run-time address table objects with ipset module 2010-07-27 01:14:04 +00:00
Vadim Kurland da80eac2dd patch by slif to make the test work more reliably. Fixes #1638 2010-07-26 16:01:34 +00:00
Vadim Kurland 7efbcf6825 * code cleanup. Removed bunch of warnings and cleaned up some test
cases using small patches from Mike Slifcak  slif@bellsouth.net
2010-07-25 03:41:27 +00:00
Vadim Kurland 4ad0e5be21 minor cleanup, removed few warnings and fixed code that loads resources in ImporerTest 2010-07-24 16:21:12 +00:00
Vadim Kurland a1c7183d4c updated release notes 4.1 2010-07-24 06:47:36 +00:00
Vadim Kurland e1bca13699 * Fixes #1635: included code generated by the configlet
run_time_address_tables into script for all linux-based host
OS
2010-07-24 06:41:46 +00:00
Vadim Kurland 1a8d8cd1ea fixed #1633 use ipset module in NATCompiler_ipt 2010-07-24 06:03:48 +00:00
Vadim Kurland e7983c0eeb additional unit test for run_time_address_tables configlet 2010-07-24 05:05:48 +00:00
Vadim Kurland 46be5ec6c1 updated changelog to mention fix for #1628 2010-07-24 03:10:20 +00:00
Vadim Kurland 8c90295231 fixes 1625, #1627 See #137 added configlet for run time adress table objects with ipset module to check ipset tool and the module, check and load data from address table files 2010-07-24 03:09:02 +00:00
Vadim Kurland 11cb56d6c9 * PolicyCompiler_PrintRule.cpp (PrintRule::normalizeSetName):
fixed #1626 "convert space and other special characters found in
the run time address table object into underscores". The name of
the run-time Address Table object is used for the name of the
ipset module set. Making sure the name is sanitized of the
chanracters considered "special" by shell before it is used.
2010-07-24 00:02:53 +00:00
Vadim Kurland 15e8677943 * check_utilities: fixed #1625, #see 137: added ipset to the list
of command line utilities generated iptables script can
use. Script will check if the utility is present on the firewall
if user requested use of iptables module "set" for run-time
Address Table objects. Also added an input field for ipset in the
advanced settings host OS dialog for Linux to let the user specify
path to ipset if it is not standard.
2010-07-23 23:38:38 +00:00
Vadim Kurland e82f770956 * PolicyCompiler_PrintRule.cpp: added support for iptables module
"set" used to generate iptables command for rules with run-time
AddressTable objects. This module is only available in iptables
1.4.1.1 and later, however some embedded platforms do not have it
even though they ship later versions ofiptables (e.g. OpenWRT).
Use of this module is controlled by a checkbox in the iptables 
"advanced" settings dialog which is off by default. This checkbox
becomes disabled when iptables version is set to < 1.4.1.1.
2010-07-23 05:15:05 +00:00
Vadim Kurland 56ce332788 * newClusterDialog_create.cpp (newClusterDialog::createNewCluster):
fixed #1622 "Crash when configuring cluster". The GUI used to crash
if user created a cluster copying rules of one of the cluster members
while that rule set was opened in the rule set view.
2010-07-22 23:54:32 +00:00
Vadim Kurland df647bfab2 see #1615 better dialog layout but still too wide 2010-07-22 04:26:04 +00:00
Vadim Kurland 53a08e03c1 iptables "advanced" settings dialog redesign 2010-07-22 02:01:13 +00:00
Vadim Kurland 076cfdc8f1 fixed tab order in the interface editor widget See #1613 2010-07-22 01:11:42 +00:00
Vadim Kurland 7bd96d7042 rearranged elements in the interface editor widget to reduce its height. See #1613 2010-07-22 01:06:43 +00:00
Vadim Kurland 350fbfb45d * InterfaceEditorWidget.ui: set minimum height for the name, label
and few other input fields because they came out squished on Mac.
Fixes #1613.
2010-07-22 00:22:33 +00:00
Vadim Kurland 559d22e137 * FWWindow.cpp (fileNew): fixed #1611 "File/New should create new
project panel". Like #1612, open new data file in a new project
panel if current project panel has no data file associated with it
but has unsaved changes.
2010-07-21 23:45:22 +00:00
Vadim Kurland b48d84e6ab * FWWindow.cpp (loadFile): fixed #1612 "File/Open should create
new project panel". If user has some unsaved changes in the
default project panel (the one with no associated file) and then
uses File/Open menu to open another data file, the file should
open in a new project panel.
2010-07-21 23:40:35 +00:00
Vadim Kurland d870730db2 merge from v4_0 branch r3122-3124 2010-07-21 16:10:10 +00:00
Vadim Kurland fafcb2202c renamed release notes file; made main window wider by default 2010-07-21 05:06:19 +00:00
Vadim Kurland b8564b8f61 now really /4.1 in settings 2010-07-21 01:20:29 +00:00
Vadim Kurland b98bdd2584 setting spath /4.1 2010-07-21 01:05:07 +00:00
Vadim Kurland 8a4fb97afe upgraded test data files for 4.1 2010-07-20 23:45:05 +00:00
Vadim Kurland 7247990781 added copy of routing_functions configlet for dd-wrt 2010-07-20 23:42:39 +00:00
Vadim Kurland 82d85270f5 Creating v4.1.0 branch 2010-07-20 23:05:46 +00:00
Vadim Kurland c077f60e13 fixed #1603 Welcome dialog should show full version of the program 2010-07-20 22:19:08 +00:00
Vadim Kurland 565e888472 version 4.1.0 2010-07-20 18:02:45 +00:00
Vadim Kurland 53950163aa code clean-up 2010-07-20 16:54:37 +00:00
Vadim Kurland 671e772e1b fixed SF bug #3031930 "segfault starting discovery druid" 2010-07-20 06:29:22 +00:00
Vadim Kurland 468746142b fixing unit tests for the latest change 2010-07-20 03:52:42 +00:00
Vadim Kurland ebf137670c fixed SF bug 3031721 Standard bjects library was made read-write by mistake in one of the earlier builds 2010-07-19 22:33:45 +00:00
Vadim Kurland a70ef0272d fixed #1597 import method "import configuration of a firewall" is disabled on the first page of the discovery druid 2010-07-18 01:38:46 +00:00
Vadim Kurland 281a418b7b fixed #1583 added file open_source_licenses.txt and included putty license in it 2010-07-18 00:43:10 +00:00
Vadim Kurland d7a59583c9 fixed #1584 removed empty files 2010-07-18 00:23:12 +00:00
Vadim Kurland 20caea4f99 fixed #1585 script should not restart itself, just fill a variable with default command "start" 2010-07-18 00:21:35 +00:00
Vadim Kurland cb020de62c Refs #1587 trying to eliminate unnecessary events when the same object is updated in the tree many times 2010-07-18 00:07:27 +00:00
Vadim Kurland 8e9ac0a8ce release notes synchronized with changelog 2010-07-15 19:24:36 +00:00
Vadim Kurland e75d3ccdb0 minor updates in test data files after they were loaded in the latest version of the gui 2010-07-15 17:09:55 +00:00
Vadim Kurland f71349678e fixed #1582 tree is not refreshed when new network objects are created in the newFirewallDialog 2010-07-15 17:09:25 +00:00
Vadim Kurland 8a28fa0984 trying to fix unit test instDialogCompileTest.cpp 2010-07-15 02:01:38 +00:00
Vadim Kurland b6d53c7298 fixed #1571 "Installer does not work if firewall object name
contains spaces". Installer should use escaping to make sure
file name with a space is correctly interpreted by the script
it runs on the firewall.
2010-07-14 23:22:49 +00:00
Vadim Kurland 73e1ee1f0d fixed #1544 "fwbuilder crashes during import of file with rtf
formatting data". The fix should prevent crashes in other cases
when import was unsuccessful.
2010-07-14 19:26:11 +00:00
Vadim Kurland 24aa70ecbf debugging on windows 2010-07-12 03:01:52 +00:00
Vadim Kurland b6260cae89 fixed SF bug 3027284 added input field for ssh timeout in the Installer tab of global prefs dialog. Still needs testing on windows 2010-07-12 02:31:41 +00:00
Vadim Kurland 635e9f3df1 fixed unit test data files for SF bug 3027272 2010-07-10 20:00:38 +00:00
Vadim Kurland 4c2b0d4f09 fixed SF bug 3027272 2010-07-10 19:36:10 +00:00
Vadim Kurland f8918cbb9a more checks for printing from command line, See #1533 2010-07-03 16:02:24 +00:00
Vadim Kurland 20ca3b3e02 fixed #1528 fixed typo in the warning message 2010-06-29 00:28:40 +00:00