Adam Ierymenko
|
2b10a982e9
Match on tag sender equals or tag recipient equals.
|
8 years ago |
Adam Ierymenko
|
31bece7fa0
Add ipauth handling of IPv6 NDP neighbor solicitations and advertisements. IPv6 works well now with ipauth.
|
8 years ago |
Adam Ierymenko
|
4436824faf
ipauth characteristic now works with ARP
|
8 years ago |
Adam Ierymenko
|
9d7ff26f25
Helps if you actually add the ipauth mask to the characteristics mask.
|
8 years ago |
Adam Ierymenko
|
72653e54f9
Finish wiring up ipauth and macauth to Network filter.
|
8 years ago |
Adam Ierymenko
|
b679ebde3b
Ad-hoc networks, a cool and easy to implement little feature that allows controllerless networks. These only allow IPv6 6plane, no multicast, and the network ID encodes the allowed port range.
|
8 years ago |
Adam Ierymenko
|
cdc289fa9c
Tags work.
|
8 years ago |
Adam Ierymenko
|
672f17c6e9
Add a mask and value range to the IP tos rule field. This allows TOS to be matched more usefully. This will break anyone using tos in the beta, but nobody seems to be and its pre-release so now is the time.
|
8 years ago |
Adam Ierymenko
|
78d548458b
Capabilities basically work but need to refactor a bit for performance reasons.
|
8 years ago |
Adam Ierymenko
|
9ddc2a4331
Add a break action to rules engine to make capabilities easier to use.
|
8 years ago |
Adam Ierymenko
|
5dbebc513a
Minor send path refactor to make packet I/O work on clusters if they are members of networks. Also fix a crash if compiled in cluster mode but no cluster is enabled.
|
8 years ago |
Adam Ierymenko
|
ed31cb76d6
Fix to cluster network configs.
|
8 years ago |
Adam Ierymenko
|
0b3b994241
Relay policy can now be computed.
|
8 years ago |
Adam Ierymenko
|
c8554504f3
.
|
8 years ago |
Adam Ierymenko
|
6b12d86209
Add a workaround for an edge case in TEE/REDIRECT if we are the inbound destination and teeing is only being done on the outbound side.
|
8 years ago |
Adam Ierymenko
|
fe530548bb
Fix MATCH_RANDOM in controller.
|
8 years ago |
Adam Ierymenko
|
2eaff6d484
Fix to characteristcs in rules engine.
|
8 years ago |
Adam Ierymenko
|
226123ca08
Refactor controller to permit sending of pushes as well as just replies to config requests.
|
8 years ago |
Adam Ierymenko
|
27d997a2e5
.
|
8 years ago |
Adam Ierymenko
|
6469aa9df9
typo
|
8 years ago |
Adam Ierymenko
|
ce6b5bc6f5
.
|
8 years ago |
Adam Ierymenko
|
4f3775bb86
Fix ICMP match.
|
8 years ago |
Adam Ierymenko
|
8850a8610a
Fix filter trace.
|
8 years ago |
Adam Ierymenko
|
e53f63ca87
Broke down and added an OR to the rules engine. It is now possible to have a series of MATCHes that are ORed.
|
8 years ago |
Adam Ierymenko
|
45c4ccb153
Add a tags both equal match.
|
8 years ago |
Adam Ierymenko
|
adeb7e7da0
Make capability flags match more user-friendly and appropriate since "match any flag" is generally what we want.
|
8 years ago |
Adam Ierymenko
|
988049f39b
Add new rule to rules engine: random match.
|
8 years ago |
Adam Ierymenko
|
9eaa3756f8
Fix deadlock-causing regression in Network.
|
8 years ago |
Adam Ierymenko
|
4fe9a4fe83
Fix memory leak.
|
8 years ago |
Adam Ierymenko
|
9f550292fe
Simply network auth logic and always sent error on auth failure even for unknown networks to prevent forensics.
|
8 years ago |