public inbox for development@lists.ipfire.org
 help / color / mirror / Atom feed
* [PATCH] firewall.cgi: Allow to creating input rules from Orange to another zone.
@ 2021-07-16 16:35 Stefan Schantl
  2021-07-17 12:14 ` Michael Tremer
  0 siblings, 1 reply; 2+ messages in thread
From: Stefan Schantl @ 2021-07-16 16:35 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 1072 bytes --]

It was not able to create a firewall rule from the orange network to a
different network address of the firewall. ( For example: Orange -> IPFire's green address)

These rules always have been handled as FORWARD rules which is totaly
wrong.

Fixes #12265.

Signed-off-by: Stefan Schantl <stefan.schantl(a)ipfire.org>
Tested-by: Peter Müller <peter.mueller(a)ipfire.org>
---
 html/cgi-bin/firewall.cgi | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/html/cgi-bin/firewall.cgi b/html/cgi-bin/firewall.cgi
index 70dee8d3c..e50a98179 100644
--- a/html/cgi-bin/firewall.cgi
+++ b/html/cgi-bin/firewall.cgi
@@ -247,7 +247,7 @@ if ($fwdfwsettings{'ACTION'} eq 'saverule')
 		$errormessage=$Lang::tr{'fwdfw err same'};
 	}
 	# INPUT part
-	if ($fwdfwsettings{'grp2'} eq 'ipfire' && $fwdfwsettings{$fwdfwsettings{'grp1'}} ne 'ORANGE'){
+	if ($fwdfwsettings{'grp2'} eq 'ipfire') {
 		$fwdfwsettings{'config'}=$configinput;
 		$fwdfwsettings{'chain'} = 'INPUTFW';
 		$maxkey=&General::findhasharraykey(\%configinputfw);
-- 
2.30.2


^ permalink raw reply	[flat|nested] 2+ messages in thread

* Re: [PATCH] firewall.cgi: Allow to creating input rules from Orange to another zone.
  2021-07-16 16:35 [PATCH] firewall.cgi: Allow to creating input rules from Orange to another zone Stefan Schantl
@ 2021-07-17 12:14 ` Michael Tremer
  0 siblings, 0 replies; 2+ messages in thread
From: Michael Tremer @ 2021-07-17 12:14 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 1272 bytes --]

Reviewed-by: Michael Tremer <michael.tremer(a)ipfire.org>

> On 16 Jul 2021, at 17:35, Stefan Schantl <stefan.schantl(a)ipfire.org> wrote:
> 
> It was not able to create a firewall rule from the orange network to a
> different network address of the firewall. ( For example: Orange -> IPFire's green address)
> 
> These rules always have been handled as FORWARD rules which is totaly
> wrong.
> 
> Fixes #12265.
> 
> Signed-off-by: Stefan Schantl <stefan.schantl(a)ipfire.org>
> Tested-by: Peter Müller <peter.mueller(a)ipfire.org>
> ---
> html/cgi-bin/firewall.cgi | 2 +-
> 1 file changed, 1 insertion(+), 1 deletion(-)
> 
> diff --git a/html/cgi-bin/firewall.cgi b/html/cgi-bin/firewall.cgi
> index 70dee8d3c..e50a98179 100644
> --- a/html/cgi-bin/firewall.cgi
> +++ b/html/cgi-bin/firewall.cgi
> @@ -247,7 +247,7 @@ if ($fwdfwsettings{'ACTION'} eq 'saverule')
> 		$errormessage=$Lang::tr{'fwdfw err same'};
> 	}
> 	# INPUT part
> -	if ($fwdfwsettings{'grp2'} eq 'ipfire' && $fwdfwsettings{$fwdfwsettings{'grp1'}} ne 'ORANGE'){
> +	if ($fwdfwsettings{'grp2'} eq 'ipfire') {
> 		$fwdfwsettings{'config'}=$configinput;
> 		$fwdfwsettings{'chain'} = 'INPUTFW';
> 		$maxkey=&General::findhasharraykey(\%configinputfw);
> -- 
> 2.30.2
> 


^ permalink raw reply	[flat|nested] 2+ messages in thread

end of thread, other threads:[~2021-07-17 12:14 UTC | newest]

Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2021-07-16 16:35 [PATCH] firewall.cgi: Allow to creating input rules from Orange to another zone Stefan Schantl
2021-07-17 12:14 ` Michael Tremer

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox