Projet

Général

Profil

Révision:

Révisions

# Date Auteur Commentaire
5afbc789 2021-06-16 10:09 Tim Meusel

Merge pull request #99 from bastelfreak/fixtures

pull fixtures from git and not forge

1a986e22 2021-06-16 05:37 Tim Meusel

pull fixtures from git and not forge

ef94dda9 2021-06-03 09:26 Nacho Barrientos

Merge pull request #98 from traylenator/rc

Release 2.0.1-rc0

1d9033d0 2021-06-03 09:22 Steve Traylen

Release 2.0.1-rc0

0c4f8de2 2021-06-03 08:56 Nacho Barrientos

Merge pull request #97 from cernops/release_140

Prepare release 2.0.0

683d1049 2021-06-01 11:36 Nacho Barrientos

Prepare release 2.0.0

65b4f2f3 2021-06-01 04:28 Steve Traylen

Merge pull request #96 from cernops/issue95

Allow creating a totally empty firewall

7b9d6ffc 2021-05-31 04:42 Nacho Barrientos

Allow creating a totally empty firewall

By setting `nftables::inet_filter` and `nftables::nat` to `false`
users can now start off from a totally empty firewall and add the
tables, chains and rules they'd like.

The default skeleton for inet-filter, ip-nat and ip6-nat is kept...

4937bed5 2021-04-27 02:15 Steve Traylen

Merge pull request #93 from cernops/ibarrien_saddr

Fix IPv4 source address type detection

bd8baa0f 2021-04-26 12:27 Nacho Barrientos

Fix IPv4 source address type detection

Before this patch, a rule like this:

```
nftables::simplerule { 'foo':
action => 'accept',
dport => 443,
proto => 'tcp4',
saddr => '192.168.1.10',
}
```

would incorrectly generate this rule:...

a8008e42 2021-04-21 10:56 Steve Traylen

Merge pull request #92 from traylenator/everything

Drop Puppet 5, puppetlabs/concat 7.x, puppetlabs/stdlib 7.x, camptocamp/systemd: 3.x

1eda6efa 2021-04-21 09:46 Steve Traylen

Rely on puppet 6 calling daemon-reload

Since Puppet 6 now there no need to explicitly
call `systemctl daemon-reload`.

ad042d5f 2021-04-21 09:39 Steve Traylen

Merge remote-tracking branch 'kenyon/bump-concat' into everything

42c426c1 2021-04-16 07:58 Tim Meusel

puppetlabs/concat: Allow 7.x

9b6d7f08 2021-04-16 07:57 Tim Meusel

puppetlabs/stdlib: Allow 7.x

af33f653 2021-04-16 07:56 Tim Meusel

camptocamp/systemd: allow 3.x

f82aaa5a 2021-03-26 09:32 Steve Traylen

Merge pull request #88 from cernops/dotfiles_yas_link

Amend link to Yasnippets

693a3d98 2021-03-26 04:17 Nacho Barrientos

Amend link to Yasnippets

I reorganised my dotfiles a bit so this link must be changed. Sorry
for the noise.

89d99b8a 2021-03-25 09:07 Steve Traylen

Merge pull request #87 from cernops/bump_rc

Release 1.3.1-rc0

bbdcfb2d 2021-03-25 08:53 Nacho Barrientos

Release 1.3.1-rc0

cae79123 2021-03-25 08:39 duritong

Merge pull request #86 from cernops/release_1_3_0

Prepare release 1.3.0

804b96e4 2021-03-25 07:53 Nacho Barrientos

Prepare release 1.3.0

3f2f50c9 2021-03-25 03:58 Nacho Barrientos

Merge pull request #85 from cernops/qemu

Add rules for QEMU/libvirt guests (bridged virtual networking)

cd2a3cbf 2021-03-25 03:30 Nacho Barrientos

Add rules for QEMU/libvirt guests

18b211e7 2021-03-24 17:46 duritong

Merge pull request #80 from luisfdez/dockerce

Add Docker-CE default rules

1bf717d9 2021-03-23 08:34 Luis Fernández Álvarez

Add optional handling of chains

c86e270f 2021-03-23 07:37 Steve Traylen

Merge pull request #84 from traylenator/version

Add nftables.version to structured fact.

4d95ea85 2021-03-23 07:03 Steve Traylen

Add fact section to README.md

9dca9bc3 2021-03-23 06:29 Luis Fernández Álvarez

Fix doc defaults

032387dc 2021-03-23 02:59 Steve Traylen

Add nftables.version to structured fact.

```
FACTERLIB=. facter -p nftables {
tables => [
"bridge-filter",
"bridge-nat",
"inet-firewalld",
"ip-firewalld",
"ip6-firewalld"
],
version => "0.9.3"
}
```

242df534 2021-03-20 19:51 Kenyon Ralph

metadata.json: drop Puppet 5 support

Also bump puppetlabs/concat and puppetlabs/stdlib, whose versions
7.0.0 also dropped support for Puppet 5.

Fixes #78

b61ccb4a 2021-03-19 09:04 Luis Fernández Álvarez

Fix rulename spec in spec

283e1c3c 2021-03-19 08:56 Luis Fernández Álvarez

Fix syntax

c3515492 2021-03-19 08:48 Luis Fernández Álvarez

Add newline & more tests

6be2adf7 2021-03-19 07:12 Luis Fernández Álvarez

Add Docker-CE default rules

7a77d75a 2021-03-15 17:28 duritong

Merge pull request #82 from cernops/ibarrien_activemq

Add rules for Apache ActiveMQ

771b3256 2021-03-15 09:59 Nacho Barrientos

Add rules for Apache ActiveMQ

502b9dac 2021-03-09 05:45 duritong

Merge pull request #81 from cernops/emacs_readme

Fix sections and add a pointer to code snippets for Emacs

b1b61501 2021-03-09 04:37 Nacho Barrientos

Add pointer to Yasnippets for some defined types

2fda87af 2021-03-09 04:37 Nacho Barrientos

Improve sections' formatting

812ca777 2021-03-03 04:17 Steve Traylen

Release 1.2.1-rc0 (#77)

05c7f19d 2021-03-03 03:38 Steve Traylen

Release 1.2.0 (#76)

92e0fcb6 2021-03-02 08:31 duritong

fix #74 - ensure table are initialized before flushing them (#75)

5791cc12 2021-03-01 11:00 Kienan Stewart

Temporarily use /bin/ for systemctl and echo paths in Debian 10

Debian Buster has symlinks from usrmerge that resolve to /bin/X,
but systems upgraded from Stretch or earlier that haven't installed
usrmerge will not have anything in /usr/bin/X.

This should be removed once every installation we have has had...

4184db01 2021-02-22 18:09 Gabriel Filion

Merge remote-tracking branch 'upstream/master' into stretch_support

942569ea 2021-02-14 10:00 duritong

Merge pull request #73 from Koumbit/global_chain_not_hardcoded

start declaring the 'global' chain with module resources

cf38fe4a 2021-02-14 01:26 Gabriel Filion

create tests for presence of the "global" chain

1a4f336e 2021-02-11 16:42 Gabriel Filion

start declaring the 'global' chain with module resources

the 'global' chain is a vestigial piece of early development on this
module, but it can be useful for creating fast short-circuits like
blocking traffic that match a certain set of IPs.

in the current state we can't inject rules inside the 'global' chain...

ca0e9755 2021-01-29 06:59 Steve Traylen

Bump version to 1.1.2-rc0 (#72)

Manual MR due to travis_release being broken by necessity to approve.

https://github.com/voxpupuli/puppet-nftables/issues/61

bd0d7998 2021-01-29 03:10 Steve Traylen

Release 1.1.1 (#71)

(351-400/665) Par page : 50, 100, 200

Formats disponibles : Atom