User Tools

Site Tools


doc:uci:firewall

Old Revisions

These are the older revisons of the current document. To revert to an old revision, select it from below, click Edit this page and save it.

  • 2015/10/28 13:45 Firewall configuration – Zone length limit also present in 15.05 TimMillerDyck (current)
  • 2015/10/16 12:17 Show differences to current revisions Firewall configuration [Block access to the Internet for specific IP on certain times] jow
  • 2015/10/03 14:18 Show differences to current revisions Firewall configuration [Examples] Stateful firewall without NAT zorun
  • 2015/10/02 18:48 Show differences to current revisions Firewall configuration [Redirects] pier4r
  • 2015/08/23 03:06 Show differences to current revisions Firewall configuration Add maximum working length for zone name TimMillerDyck
  • 2015/08/12 15:59 Show differences to current revisions Firewall configuration multle ports definitions pier4r
  • 2015/08/12 15:27 Show differences to current revisions Firewall configuration [Zones] pier4r
  • 2015/08/05 20:26 Show differences to current revisions Firewall configuration [Rules] icmp_type fillarios
  • 2015/07/08 10:46 Firewall configurationState that FORWARD rule for a zone controls traffic between different interfaces in the same zone fillarios
  • 2015/06/22 22:31 Firewall configuration[nf_conntrack_skip_filter] M.Bastian
  • 2015/06/22 11:36 Firewall configurationhttps://dev.openwrt.org/ticket/19966 M.Bastian
  • 2015/05/21 10:48 Firewall configuration[Zones] DarkEnd
  • 2015/04/06 23:08 Firewall configuration[Block access to the Internet for specific IP on certain times] rseiler
  • 2015/03/26 14:21 Firewall configuration[Zone declaration for semi non-UCI interfaces, manually listed in the network config, and forwardings] pier4r
  • 2015/03/01 12:33 Firewall configuration[Redirects] pier4r
  • 2015/03/01 12:32 Firewall configurationQuestions pier4r
  • 2015/03/01 12:18 Firewall configuration[Redirects] pier4r
  • 2015/02/28 01:54 Firewall configuration[Rules] Missing option. Don't know about default though. segv
  • 2015/02/27 11:42 Firewall configuration[Zones] pier4r
  • 2015/02/27 11:41 Firewall configuration[Zones] pier4r
  • 2015/02/26 14:19 Firewall configuration[Zones] pier4r
  • 2015/02/26 14:18 Firewall configuration[Zones] pier4r
  • 2015/02/24 17:00 Firewall configuration[DNAT/SNAT redirects and forwarding combination] pier4r
  • 2015/02/19 16:38 Firewall configuration[DNAT/SNAT redirects and forwarding] pier4r
  • 2015/02/19 16:38 Firewall configuration[Port forwarding for IPv4 (Destination NAT/DNAT)] pier4r
  • 2014/12/29 19:10 Firewall configuration[Zone declaration for semi non-UCI interfaces, manually listed in the network config, and forwardings] pier4r
  • 2014/12/29 19:09 Firewall configuration[Zone declaration for semi non-UCI interfaces, manually listed in the network config, and forwardings] pier4r
  • 2014/12/29 19:04 Firewall configuration[Zone declaration for semi non-UCI interfaces, manually listed in the network config, and forwardings] pier4r
  • 2014/12/29 19:00 Firewall configuration[Zone declaration for semi non-UCI interfaces, manually listed in the network config] pier4r
  • 2014/12/29 18:58 Firewall configurationZone declaration for semi non-UCI interfaces, manually listed in the network config pier4r
  • 2014/12/29 16:16 Firewall configuration[Zones] pier4r
  • 2014/12/22 12:29 Firewall configuration[Masquerading on lan] pier4r
  • 2014/12/22 12:15 Firewall configuration[masquerading example] pier4r
  • 2014/11/28 13:24 Firewall configurationRename forward to accept for IPv6 since it is not a port forward in the traditional sense jow2
  • 2014/10/31 13:17 Firewall configurationcorrected link to #notes.on.connection.tracking por
  • 2014/10/10 11:52 Firewall configuration mwarning
  • 2014/10/10 11:49 Firewall configuration mwarning
  • 2014/09/08 16:30 Firewall configuration hamy
  • 2014/09/08 16:21 Firewall configuration hamy
  • 2014/09/08 13:03 Firewall configurationadding nf_conntrack_skip_filter detail hamy
  • 2014/08/22 17:21 Firewall configurationFix SSH redirection example zorun
  • 2014/08/22 17:18 Firewall configurationAdd IPv6 forwarding examples zorun
  • 2014/08/22 17:08 Firewall configuration zorun
  • 2014/08/22 17:07 Firewall configuration zorun
  • 2014/08/22 17:06 Firewall configuration zorun
  • 2014/03/03 13:45 Firewall configurationmore security ayaka
  • 2014/01/13 22:46 Firewall configuration valentt
  • 2014/01/13 22:45 Firewall configuration valentt
  • 2013/12/14 21:57 Firewall configurationadd missing name option to examples jow
  • 2013/10/29 10:32 Firewall configurationDNAT example: make it compatible with NAT reflection zorun
  • 2013/10/29 10:31 Firewall configurationClarification of reflection conditions zorun
  • 2013/06/05 18:54 Firewall configurationadd remaining missing user chains jow
  • 2013/06/05 18:37 Firewall configurationadd missing user chain jow
  • 2013/06/05 18:18 Firewall configurationfix typo in date format jow
  • 2013/06/04 02:55 Firewall configuration lorema
  • 2013/06/04 02:50 Firewall configuration lorema
  • 2013/05/21 16:13 Firewall configurationremove bullshit comments jow
  • 2013/05/19 11:59 Firewall configuration orca
  • 2013/05/17 14:17 Firewall configurationRemove useless paragraph about temporarely stopping the firewall "/etc/init.d/firewall stop/start" does exactly that jow
  • 2013/05/15 21:47 Firewall configuration 70d7a4f46
  • 2013/05/06 16:52 Firewall configurationformatting jow
  • 2013/05/06 16:46 Firewall configurationdocument set_mark, set_xmark options, NOTRACK and MARK targets jow
  • 2013/05/06 16:37 Firewall configurationclarification jow
  • 2013/05/06 16:37 Firewall configurationclarification jow
  • 2013/05/06 16:36 Firewall configurationclarification jow
  • 2013/05/06 16:31 Firewall configurationadd packet flow section to describe order of uci chain processing jow
  • 2013/05/06 14:19 Firewall configurationfw3 example to print rules jow
  • 2013/05/06 14:11 Firewall configurationformatting jow
  • 2013/05/06 14:10 Firewall configurationnewer time rule example jow
  • 2013/05/06 14:04 Firewall configurationdocument new include options jow
  • 2013/05/06 13:55 Firewall configurationheadline level jow
  • 2013/05/06 13:54 Firewall configurationadd table of allowed storage / match combinations for ipsets jow
  • 2013/05/06 13:46 Firewall configurationdocument new rule match values jow
  • 2013/05/06 13:46 Firewall configurationdocument new redirect match values jow
  • 2013/05/06 13:25 Firewall configurationipset option summary jow
  • 2013/05/06 12:49 Firewall configurationinitial ipset section jow
  • 2013/03/23 16:49 Firewall configurationAdd firewall3 debug info jmccrohan
  • 2013/03/13 21:07 Firewall configurationDocument reflection_src under redirects markmentovai
  • 2013/03/01 20:02 Firewall configurationalignment sur4die
  • 2013/03/01 19:57 Firewall configurationfix transparent proxy rule example to also alter the destination IP sur4die
  • 2013/02/05 10:11 Firewall configurationfix link into source: firewall now in /network/config orca
  • 2013/02/05 10:09 Firewall configuration orca
  • 2013/02/04 16:34 Firewall configurationoutput rule example jow
  • 2013/02/04 16:30 Firewall configurationnew rule semantics jow
  • 2013/02/04 16:23 Firewall configurationextended zone declaration examples jow
  • 2013/02/04 16:19 Firewall configurationdocument new zone options jow
  • 2013/01/24 22:07 Firewall configuration radzio
  • 2013/01/24 19:51 Firewall configurationDefaults were wrong as of 12.09-rc1; could be they were always wrong. radzio
  • 2012/11/25 08:48 Firewall configuration/etc/services names don't always work, such as when there's a dash, because that's interpreted as a port range kenyon
  • 2012/11/13 02:39 Firewall configuration xennex
  • 2012/11/13 02:37 Firewall configurationdenoting what "FORWARD" means for a Zone section xennex
  • 2012/11/13 02:23 Firewall configurationRewrote it for better understanding of the context of the system. xennex
  • 2012/09/13 08:53 Firewall configuration/etc/services names are allowed too kenyon
  • 2012/09/13 08:47 Firewall configurationnote that * allows any destination zone kenyon
  • 2012/07/31 16:01 Firewall configurationwp orca
  • 2012/07/31 15:59 Firewall configuration orca
  • 2012/07/31 15:34 Firewall configurationMinor edits -- GWH -- ged
  • 2012/07/17 18:26 Firewall configurationFirewall 2.38 is current ghewson
  • 2012/07/17 18:25 Firewall configurationFirewall 2.38 is current ghewson
  • 2012/07/17 18:24 Firewall configurationFirewall 2.38 is current ghewson
  • 2012/07/17 18:21 Firewall configurationFirewall 2.38 is current ghewson
  • 2012/07/17 18:18 Firewall configurationFirewall 2.38 is current ghewson
  • 2012/07/17 18:16 Firewall configurationFirewall 2.38 is current ghewson
  • 2012/07/17 17:52 Firewall configurationCopyedit ghewson
  • 2012/07/17 17:35 Firewall configurationCopyedit ghewson
  • 2012/07/17 17:33 Firewall configurationCopyedit ghewson
  • 2012/07/17 17:24 Firewall configurationCopyedit ghewson
  • 2012/07/17 16:53 Firewall configurationCopyedit ghewson
  • 2012/07/17 16:05 Firewall configurationCopyedit ghewson
  • 2012/07/17 12:06 Firewall configurationCopyedit ghewson
  • 2012/07/17 11:45 Firewall configurationCopyedit ghewson
  • 2012/07/17 11:40 Firewall configurationCopyedit ghewson
  • 2012/05/12 07:28 Firewall configurationpunctuation kenyon
  • 2012/03/01 17:01 Firewall configurationAdded lexical notes for new users. dlublink
  • 2012/02/24 04:41 Firewall configurationModified first sentence inserting "or" riskfactor
  • 2012/01/17 20:50 Firewall configurationcode markup for shell stuff jow
  • 2012/01/17 20:48 Firewall configurationlet's call it firewall program, it may not be a script jow
  • 2012/01/17 20:38 Firewall configurationuse hashmarks for cli commands like in previous section jow
  • 2012/01/17 20:38 Firewall configurationhowto invoke debug jow
  • 2012/01/06 18:18 Firewall configurationadded ssh example valentt
  • 2011/11/17 03:58 Firewall configurationfix double escaping jow
  • 2011/11/17 03:39 Firewall configurationnewline jow
  • 2011/11/17 03:38 Firewall configurationadd example of timed rule jow
  • 2011/11/17 03:25 Firewall configurationwiki markup jow
  • 2011/11/17 03:24 Firewall configurationadd not-yet-documented options of r27317 jow
  • 2011/11/17 03:24 Firewall configurationadd not-yet-documented options of r27317 jow
  • 2011/11/16 22:27 Firewall configurationexpliciately specify implicit DNAT target to make it more clear jow
  • 2011/11/16 22:27 Firewall configurationcomplete external proxy example jow
  • 2011/09/05 10:17 Firewall configurationbetter introduction orca
  • 2011/09/01 19:42 Firewall configurationlogical interface is not necessary naaktgeboren
  • 2011/09/01 19:40 Firewall configurationsimply adding tunnel iface to wan zone doesn't allow forwarding naaktgeboren
  • 2011/07/03 22:20 Firewall configurationipv6 foward info realopty
  • 2011/05/28 10:49 Firewall configuration written_direcon
  • 2011/05/28 10:49 Firewall configuration written_direcon
  • 2011/05/27 15:34 Firewall configurationadd IPv6 notes orca
  • 2011/04/29 12:01 Firewall configurationheadline level, text jow
  • 2011/03/31 15:28 Firewall configurationtypo orca
  • 2011/03/31 15:03 Firewall configuration marcoanttonnio
  • 2011/03/31 14:58 Firewall configurationI moved the link to the netfilter article orca
  • 2011/03/31 14:41 Firewall configuration marcoanttonnio
  • 2011/03/31 14:39 Firewall configuration marcoanttonnio
  • 2011/03/25 15:52 Firewall configurationtypo frex
  • 2011/03/25 15:52 Firewall configurationAdded how to delete single rules frex
  • 2011/03/06 22:26 Firewall configurationmake target the last option, like in the other samples jow
  • 2011/03/06 22:25 Firewall configurationreorder example, remove _name options, they're non standard - add comments instead jow
  • 2011/03/06 21:39 Firewall configuration written_direcon
  • 2011/03/06 21:33 Firewall configuration written_direcon
  • 2011/03/06 14:31 Firewall configuration written_direcon
  • 2011/03/06 14:30 Firewall configuration written_direcon
  • 2011/03/06 14:30 Firewall configuration written_direcon
  • 2011/03/06 14:20 Firewall configuration written_direcon
  • 2011/03/06 14:14 Firewall configuration written_direcon
  • 2011/02/24 08:43 Firewall configurationThe OpenWrt firewall script does not support negated proto arg at this time, so remove that sentence. karlhegbloom
  • 2011/02/24 08:00 Firewall configurationClarify rules section proto option syntax using language taken from the iptables man page. karlhegbloom
  • 2011/02/13 18:52 Firewall configurationadd links orca
  • 2011/01/31 21:33 Firewall configurationreorder jow
  • 2011/01/31 21:32 Firewall configurationtypo jow
  • 2011/01/31 21:32 Firewall configurationinternal and external transparent proxy jow
  • 2011/01/17 01:33 Firewall configurationI suppose the code tags where meant to be reversed... jow
  • 2010/12/20 12:32 Firewall configurationthe kernel and the user space modules are needed! orca
  • 2010/10/29 18:21 Firewall configurationip type jow
  • 2010/10/29 18:20 Firewall configurationadd DMZ example jow
  • 2010/10/27 18:08 Firewall configurationAdd more informations and how ti should appear in config. ticpu
  • 2010/09/28 11:33 Firewall configurationreflection only works for dnat jow
  • 2010/09/28 11:30 Firewall configurationfix typos jow
  • 2010/09/12 13:44 Firewall configurationsyntax fixes jow
  • 2010/09/12 13:41 Firewall configurationsnat/dnat option update jow
  • 2010/09/12 13:23 Firewall configurationtypo jow
  • 2010/09/12 13:23 Firewall configurationsnat'd ip is src_dip jow
  • 2010/09/08 04:09 Firewall configurationunset proto is not all but tcp+udp jow
  • 2010/09/08 04:08 Firewall configurationadd option dest, was missing all the time jow
  • 2010/09/05 22:50 Firewall configurationfixup snat example jow
  • 2010/09/05 22:47 Firewall configurationadd redirect target option jow
  • 2010/09/04 19:53 Firewall configurationadd reflection parameter jow
  • 2010/09/04 19:52 Firewall configurationmasq_src, dest works with backfire too now jow
  • 2010/09/04 17:54 Firewall configurationadd masq_src and masq_dest options jow
  • 2010/09/04 04:14 Firewall configurationadd log options jow
  • 2010/07/25 12:56 Firewall configurationadd block acc. to i-net realopty
  • 2010/07/19 18:51 Firewall configurationtypo fix jow
  • 2010/07/19 18:50 Firewall configurationanother note on connection tracking jow
  • 2010/07/19 07:46 Firewall configuration barkle36
  • 2010/05/29 02:28 Firewall configurationstyle fixes jow
  • 2010/05/29 02:27 Firewall configurationadd family option to rule jow
  • 2010/05/29 02:27 Firewall configurationadd family option to redirect jow
  • 2010/05/29 02:26 Firewall configurationadd family option to redirect jow
  • 2010/05/29 02:26 Firewall configurationadd family option to zone jow
  • 2010/05/22 16:46 Firewall configurationadd/move notices in v6 tunnel exmaple jow
  • 2010/05/22 16:42 Firewall configurationlink to network#interfaces in v6 tunnel example jow
  • 2010/05/22 14:35 Firewall configuration abyrne
  • 2010/05/22 14:19 Firewall configurationimprove the ipv6 example jow
  • 2010/05/22 14:07 Firewall configurationAdded example for forwarding IPv6 traffic rio
  • 2010/05/19 04:10 Firewall configurationformatting fix jow
  • 2010/05/19 04:05 Firewall configurationoption order jow
  • 2010/05/19 04:05 Firewall configurationtext fix jow
  • 2010/05/19 04:04 Firewall configurationdocument disable_ipv6 jow
  • 2010/05/19 03:16 Firewall configurationreformat proxy example jow
  • 2010/05/18 23:12 Firewall configurationminor text fixes jow
  • 2010/05/18 23:11 Firewall configurationadd example for a transparent proxy rule jow
  • 2010/05/17 11:38 Firewall configurationadd src_dip parameter jow
  • 2010/05/17 11:35 Firewall configurationlink to notrack notice jow
  • 2010/05/17 11:32 Firewall configurationadd some info on notrack jow
doc/uci/firewall.txt · Last modified: 2015/10/28 13:45 by TimMillerDyck