* [PATCH] firewall.cgi: Allow to creating input rules from Orange to another zone.
@ 2021-07-16 16:35 Stefan Schantl
2021-07-17 12:14 ` Michael Tremer
0 siblings, 1 reply; 2+ messages in thread
From: Stefan Schantl @ 2021-07-16 16:35 UTC (permalink / raw)
To: development
[-- Attachment #1: Type: text/plain, Size: 1072 bytes --]
It was not able to create a firewall rule from the orange network to a
different network address of the firewall. ( For example: Orange -> IPFire's green address)
These rules always have been handled as FORWARD rules which is totaly
wrong.
Fixes #12265.
Signed-off-by: Stefan Schantl <stefan.schantl(a)ipfire.org>
Tested-by: Peter Müller <peter.mueller(a)ipfire.org>
---
html/cgi-bin/firewall.cgi | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/html/cgi-bin/firewall.cgi b/html/cgi-bin/firewall.cgi
index 70dee8d3c..e50a98179 100644
--- a/html/cgi-bin/firewall.cgi
+++ b/html/cgi-bin/firewall.cgi
@@ -247,7 +247,7 @@ if ($fwdfwsettings{'ACTION'} eq 'saverule')
$errormessage=$Lang::tr{'fwdfw err same'};
}
# INPUT part
- if ($fwdfwsettings{'grp2'} eq 'ipfire' && $fwdfwsettings{$fwdfwsettings{'grp1'}} ne 'ORANGE'){
+ if ($fwdfwsettings{'grp2'} eq 'ipfire') {
$fwdfwsettings{'config'}=$configinput;
$fwdfwsettings{'chain'} = 'INPUTFW';
$maxkey=&General::findhasharraykey(\%configinputfw);
--
2.30.2
^ permalink raw reply [flat|nested] 2+ messages in thread
* Re: [PATCH] firewall.cgi: Allow to creating input rules from Orange to another zone.
2021-07-16 16:35 [PATCH] firewall.cgi: Allow to creating input rules from Orange to another zone Stefan Schantl
@ 2021-07-17 12:14 ` Michael Tremer
0 siblings, 0 replies; 2+ messages in thread
From: Michael Tremer @ 2021-07-17 12:14 UTC (permalink / raw)
To: development
[-- Attachment #1: Type: text/plain, Size: 1272 bytes --]
Reviewed-by: Michael Tremer <michael.tremer(a)ipfire.org>
> On 16 Jul 2021, at 17:35, Stefan Schantl <stefan.schantl(a)ipfire.org> wrote:
>
> It was not able to create a firewall rule from the orange network to a
> different network address of the firewall. ( For example: Orange -> IPFire's green address)
>
> These rules always have been handled as FORWARD rules which is totaly
> wrong.
>
> Fixes #12265.
>
> Signed-off-by: Stefan Schantl <stefan.schantl(a)ipfire.org>
> Tested-by: Peter Müller <peter.mueller(a)ipfire.org>
> ---
> html/cgi-bin/firewall.cgi | 2 +-
> 1 file changed, 1 insertion(+), 1 deletion(-)
>
> diff --git a/html/cgi-bin/firewall.cgi b/html/cgi-bin/firewall.cgi
> index 70dee8d3c..e50a98179 100644
> --- a/html/cgi-bin/firewall.cgi
> +++ b/html/cgi-bin/firewall.cgi
> @@ -247,7 +247,7 @@ if ($fwdfwsettings{'ACTION'} eq 'saverule')
> $errormessage=$Lang::tr{'fwdfw err same'};
> }
> # INPUT part
> - if ($fwdfwsettings{'grp2'} eq 'ipfire' && $fwdfwsettings{$fwdfwsettings{'grp1'}} ne 'ORANGE'){
> + if ($fwdfwsettings{'grp2'} eq 'ipfire') {
> $fwdfwsettings{'config'}=$configinput;
> $fwdfwsettings{'chain'} = 'INPUTFW';
> $maxkey=&General::findhasharraykey(\%configinputfw);
> --
> 2.30.2
>
^ permalink raw reply [flat|nested] 2+ messages in thread
end of thread, other threads:[~2021-07-17 12:14 UTC | newest]
Thread overview: 2+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2021-07-16 16:35 [PATCH] firewall.cgi: Allow to creating input rules from Orange to another zone Stefan Schantl
2021-07-17 12:14 ` Michael Tremer
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox