Commit Graph
2636 Commits
Author SHA1 Message Date
Vadim Kurland ca6d8a9dc0 fixed #1730 "Add background help
text and images to empty policy window". Showing tooltip in the
empty space in the rule set view, this tooltip provides hints on
how to edit rules which should be useful for the beginners.
2010-09-27 19:48:02 +00:00
Vadim Kurland 6922d11773 avoid setting font explicitly in the tooltip of the libraries drop-down list 2010-09-27 19:06:45 +00:00
Vadim Kurland 1722c72ae6 fixed #1741 "there is no way to undelete a library object". 2010-09-27 00:20:31 +00:00
Vadim Kurland c1602ceda5 fixed #1740
"Deleted library remains in the drop-down list".
2010-09-26 23:24:03 +00:00
Vadim Kurland dce2f5b402 fixed #1728 "Update Library drop down menu". Library drop down
list shows an item "Object libraries:" at the top that can not be
selected and that always stays on top as libraries are added,
removed and renamed.
2010-09-26 17:32:27 +00:00
Vadim Kurland 2345f13be1 * PrefsDialog.cpp (PrefsDialog::PrefsDialog): fixed #1739 "remove
"tooltip delay" input form preferences dialog". Qt4 does not allow
for changing tooltip delay.
2010-09-25 17:49:02 +00:00
Vadim Kurland 6085d9548e * RuleSetView.cpp (itemDoubleClicked): refs #1731 Change
double-clicking on "Any" object behavior. Double click on "any" in
a rule does not try to open object "any" in the tree and editor
panel.
2010-09-25 05:44:25 +00:00
Vadim Kurland e11a5a5113 refs #1731 Change double-clicking on "Any" object
behavior.
2010-09-25 00:48:02 +00:00
Vadim Kurland 6997be08df * FWBSettings.cpp (init): fixed #1738 "Enable tooltips by default" 2010-09-25 00:29:44 +00:00
Vadim Kurland fbd73a781b * ObjectManipulator.cpp (editSelectedObject): fixed #1729 "double
clicking a folder in the tree should expand it rather than open it
in the editor".

* ObjectTreeView.cpp (edit): fixed #1732 "Double clicking on
object with child objects should auto expand them".  Double
clicking on objects and folders in the tree expands and collapses
them, as well as opens object in the editor.
2010-09-25 00:25:37 +00:00
Vadim Kurland 2bda25d331 * ObjectManipulator.cpp (expandObjectInTree): fixed #1715
"automatically expand new firewall and new host objects in the
tree once they are created"
2010-09-25 00:03:33 +00:00
Vadim Kurland ce0bf12a02 fixed #1714 make checking for MODPROBE conditional 2010-09-24 19:52:21 +00:00
Vadim Kurland 409c72c97a fixed #1724 fix for the problem with pscp.exe and putty sessions 2010-09-23 04:37:27 +00:00
Vadim Kurland 179810dc73 refs #1724 trying to read from registry to correctly support putty sessions with pscp.exe 2010-09-23 03:57:47 +00:00
Vadim Kurland 87af2c12fc * NATCompiler.h (fwcompiler): fixed SF bug #3071667
"Compilation segfault with DNS address in NAT rule". Added
rule processors to replace Run-time DNSName and Address Table
objects in TSrc and TDst.
2010-09-20 21:21:27 +00:00
Vadim Kurland 55f805084b * SSHSession.cpp: Refs #1699 installation session status was reset
from "failure" to "success" in a configuration where fwbuilder gui
was running on Windows and talked to Cisco router using pscp.exe
and plink.exe and ssh session failed because of authentication
failure. This happened because plink.exe terminated with return
status "success" even in case of authentication failure.
2010-09-17 00:16:10 +00:00
Vadim Kurland d31d9e2ad6 * CompilerDriver_ipf_run.cpp (CompilerDriver_ipf::run): fixed #1702
"Wrong path in the activation script for ipfilter". Activation command
embedded in the generated .fw script used local path to the generated
.conf file on the machine where fwbuilder compiler was running.
2010-09-16 21:06:57 +00:00
Vadim Kurland ac42108b00 * FirewallInstaller.cpp (getGeneratedFileFullPath): fixed SF bug
3049665 "Firewall Settings -> Output file name misses .fw
extension"
2010-09-15 01:34:04 +00:00
Vadim Kurland da5752f8b3 * CompilerDriver_ipt_policy.cpp (processPolicyRuleSet): fixed #1707
"call function "prolog_commands" from the main iptables script part
instead of function "script_body" when prolog should be executed
after iptables reset"
2010-09-14 23:46:41 +00:00
Vadim Kurland a5ac190cbb * configlets/linux24/script_skeleton (cmd): fixed SF bug 3060325
"Address table object and prolog script conflict". Generated
script should run prolog before checking and loading run-time
address tables.
2010-09-14 23:22:48 +00:00
Vadim Kurland c3aa139f22 * NATCompiler_PrintRule.cpp (processNext): fixed SF bug 3057503
"DNAT rule with dynamic IP has a white space, causing error".
2010-09-14 21:59:13 +00:00
Vadim Kurland 75da3a7bac * PolicyCompiler_PrintRule.cpp (_printIpSetMatch): fixed #1705
"iptables (v>=1.4.4) "--set option deprecated ..."  (SF bug 3059893)
Option "--set" has been deprecated and renamed "--match-set" in
iptales 1.4.4
2010-09-14 19:57:41 +00:00
Vadim Kurland 1eb64086e3 * CompilerDriver_pf.cpp (printPathForAllTools): fixed SF bug
3061034 "ifconfig definition missing". Script generated for the
ipfw firewall on Mac OS X missed definition of variable IFCONFIG.
2010-09-14 18:32:52 +00:00
Vadim Kurland 3879ae0dd3 * IPTImporter.cpp (addPktTypeMatch), iptables.g: fixed #1703
"importing iptables line with module pkttype causes parser
error". We do not have any object with the behavior closely
resembling that of iptables module "pkttype" so the importer
creates CustomService object with the code taken from the original
iptables rule. SF bug 3065435
2010-09-14 01:47:39 +00:00
Vadim Kurland bbe4443f1c * iptables.g (m_pkttype): fixed #1703 "importing iptables line
with module pkttype causes parser error". We do not have any
object with the behavior closely resembling that of iptables
module "pkttype" so rules using this module are marked to let
administrator know that they have not been imported properly.
Parser should not abort import process when it encounters this
module though. SF bug 3065435
2010-09-13 22:28:25 +00:00
Vadim Kurland c0a32164ab started v4.1.2 2010-09-13 21:39:31 +00:00
Vadim Kurland 3684d155ab v4.1.1 release 2010-08-20 18:38:58 +00:00
Vadim Kurland f9ca1102b2 since ssh session to procurve always terminates with return code 255 even in case of success, treat all treat return codes 0 and 255 as success 2010-08-20 18:31:20 +00:00
Vadim Kurland 25c4efa301 better text for the release summary in release notes 2010-08-20 17:52:21 +00:00
Vadim Kurland 830c1f678a release notes 4.1.1 2010-08-20 17:11:01 +00:00
Vadim Kurland d438b220a0 * NATCompiler_ipt.cpp (VerifyRules2::processNext): fixed #1685
"iptables redirecting NAT rules in the OUTPUT chain". NAT rules
should be allowed to translate from CustomService to TCP or UDP
service, provided CustomService object is configured with matching
protocol. See also change in libfwbuilder NATCompiler::classifyNATRule::processNext.
2010-08-19 19:21:16 +00:00
Vadim Kurland 4c60f2a610 * NATCompiler_ipt.cpp (localNATRule::processNext): see #1685
"iptables redirecting NAT rules in the OUTPUT chain". This fix
makes it possible to create iptables NAT rule with target REDIRECT
in the OUTPUT chain. The rule should have firewall object in OSrc
and TDst rule elements.
2010-08-19 18:40:48 +00:00
Vadim Kurland c993ccd943 * NATCompiler_ipt.cpp (splitNATBranchRule::processNext): fixed #1686
"can not generate basic NAT branching rule". NAT branching rules
were not generated in single rule compile mode.
2010-08-19 18:13:22 +00:00
Vadim Kurland 2ea02ccf67 fixed #1693 , SF bug 3048516: "NAT rule with 'Use SNAT instead MASQ'
doesn't work".
2010-08-19 17:05:26 +00:00
Vadim Kurland 5718886174 * Helper.cpp (list): fixed #1691 , this is a better fix for the
problem reported in the earlier bug (see #1690).
Function Helper::findInterfaceByNetzone() throws FWException, this
changed in v4.1.0 with a fix for #1653.
2010-08-18 19:02:18 +00:00
Vadim Kurland 6f4a986273 * procurveInterfaces.cpp (procurveInterfaces::parseVlan): fixed #1683
class procurveInterfaces interprets interface "DEFAULT_VLAN" as
vlan interface with vlan id 1.
2010-08-18 02:49:40 +00:00
Vadim Kurland 42e3e6f445 * safety_net_acl: fixed #1687 "temporary access list commands
syntax is incorrect". Temporary ACL generated for the Procurve
platform was incorrect.
2010-08-18 01:14:14 +00:00
Vadim Kurland cfaf044212 * PolicyCompiler_cisco.cpp (PolicyCompiler_cisco::setAllNetworkZonesToAny):
fixed #1690 "IOS ACL and Procurve ACL compilers fail because
interfaces are not assumed to have network zone "any" anymore".
Compilers for Cisco IOS ACL and Procurve ACL always assumed all
interfaces have network zone "any". Recent changes made in 4.1.0
changed that and compilers stopped working for some rule configurations.

* (PolicyCompiler_cisco::createACLObject): fixed #1688 "Procurve
ACL remarks should be in quotes if they include space"
2010-08-17 20:32:45 +00:00
Vadim Kurland 59c53ed77d added new modules to unit tests guilib 2010-08-15 06:25:51 +00:00
Vadim Kurland 49020c33cd fixed copyright dates 2010-08-15 06:15:44 +00:00
Vadim Kurland d672e836f7 set version to 4.1.1; working implementation of policy installer for ProCurve 2010-08-15 06:12:52 +00:00
Vadim Kurland 21582f8755 updated copyright years and translations 2010-08-10 02:02:24 +00:00
Mike Horn ba593906a0 update copyright to extend to 2010 2010-08-10 01:09:45 +00:00
Vadim Kurland 33d9b60640 removed "beta" from the release notes and added parencesis for readability 2010-08-09 19:02:36 +00:00
Roman Bovsunivskiy 8f587956db Fixed #1670: firewall name will be in focus when import policy window is opened 2010-08-09 16:48:36 +00:00
Roman Bovsunivskiy a7f6c1559a Fixed #1669: next button in import dialog will be enabled only if both name and file fields are not empty 2010-08-09 16:25:23 +00:00
Vadim Kurland 9075c4a1e1 * ObjectManipulator_ops.cpp (ObjectManipulator::actuallyDeleteObject):
fixed #1674 "Crash while using Undo Stack". Operation "Cut" should be
represented by an undo macro object and should appear as one operation
on the undo stack.
2010-08-09 01:44:09 +00:00
Vadim Kurland 1ffc542e81 * ObjectManipulator.cpp (ObjectManipulator::getMenuState): fixed #1676
"Crash when deleting an interface that has multiple IP addresses
and not all addresses are selected for deletion"
2010-08-09 01:20:29 +00:00
Vadim Kurland 3ca271c2d8 fixed crash on Mac that happened when GUI started with a file as a command line argument. Need to clear current_tree_view in ObjectManipulator::clearObjects() 2010-08-06 18:21:22 +00:00
Roman Bovsunivskiy 326f421a55 Fixed newClusterDialog test (refs #1666) 2010-08-06 17:48:22 +00:00