Hello community, here is the log from the commit of package SuSEfirewall2 checked in at Fri Mar 31 15:57:47 CEST 2006. -------- --- SuSEfirewall2/SuSEfirewall2.changes 2006-03-28 16:20:04.000000000 +0200 +++ SuSEfirewall2/SuSEfirewall2.changes 2006-03-30 11:13:42.000000000 +0200 @@ -1,0 +2,6 @@ +Thu Mar 30 11:13:22 CEST 2006 - lnussel@suse.de + +- don't change igmp_max_memberships, correct docu for + FW_KERNEL_SECURITY (#162086) + +------------------------------------------------------------------- Old: ---- SuSEfirewall2-3.4_SVNr140.tar.bz2 New: ---- SuSEfirewall2-3.4_SVNr142.tar.bz2 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ SuSEfirewall2.spec ++++++ --- /var/tmp/diff_new_pack.NglNDO/_old 2006-03-31 15:57:25.000000000 +0200 +++ /var/tmp/diff_new_pack.NglNDO/_new 2006-03-31 15:57:25.000000000 +0200 @@ -1,5 +1,5 @@ # -# spec file for package SuSEfirewall2 (Version 3.4_SVNr140) +# spec file for package SuSEfirewall2 (Version 3.4_SVNr142) # # Copyright (c) 2006 SUSE LINUX Products GmbH, Nuernberg, Germany. # This file and all modifications and additions to the pristine @@ -12,7 +12,7 @@ # icecream 0 Name: SuSEfirewall2 -Version: 3.4_SVNr140 +Version: 3.4_SVNr142 Release: 1 License: GPL Group: Productivity/Networking/Security @@ -205,6 +205,9 @@ rm -rf %{buildroot} %changelog -n SuSEfirewall2 +* Thu Mar 30 2006 - lnussel@suse.de +- don't change igmp_max_memberships, correct docu for + FW_KERNEL_SECURITY (#162086) * Tue Mar 28 2006 - lnussel@suse.de - introduce FW_FORWARD_ALWAYS_INOUT_DEV for use with XEN (#154133) * Mon Mar 06 2006 - lnussel@suse.de ++++++ SuSEfirewall2-3.4_SVNr140.tar.bz2 -> SuSEfirewall2-3.4_SVNr142.tar.bz2 ++++++ diff -urN --exclude=CVS --exclude=.cvsignore --exclude=.svn --exclude=.svnignore old/SuSEfirewall2-3.4_SVNr140/SuSEfirewall2 new/SuSEfirewall2-3.4_SVNr142/SuSEfirewall2 --- old/SuSEfirewall2-3.4_SVNr140/SuSEfirewall2 2006-03-28 16:17:06.000000000 +0200 +++ new/SuSEfirewall2-3.4_SVNr142/SuSEfirewall2 2006-03-30 10:52:27.000000000 +0200 @@ -935,7 +935,6 @@ setproc 5 /proc/sys/net/ipv4/icmp_paramprob_rate setproc 6 /proc/sys/net/ipv4/icmp_timeexceed_rate setproc 20 /proc/sys/net/ipv4/ipfrag_time - setproc 1 /proc/sys/net/ipv4/igmp_max_memberships setproc "1024 29999" /proc/sys/net/ipv4/ip_local_port_range for i in /proc/sys/net/ipv4/conf/*; do setproc 1 $i/log_martians diff -urN --exclude=CVS --exclude=.cvsignore --exclude=.svn --exclude=.svnignore old/SuSEfirewall2-3.4_SVNr140/SuSEfirewall2.sysconfig new/SuSEfirewall2-3.4_SVNr142/SuSEfirewall2.sysconfig --- old/SuSEfirewall2-3.4_SVNr140/SuSEfirewall2.sysconfig 2006-03-28 16:29:10.000000000 +0200 +++ new/SuSEfirewall2-3.4_SVNr142/SuSEfirewall2.sysconfig 2006-03-30 11:07:58.000000000 +0200 @@ -607,8 +607,10 @@ # If set to yes, some obscure kernel options are set. # (icmp_ignore_bogus_error_responses, icmp_echoreply_rate, # icmp_destunreach_rate, icmp_paramprob_rate, icmp_timeexeed_rate, -# ip_local_port_range, log_martians, mc_forwarding, mc_forwarding, -# rp_filter, routing flush) +# ip_local_port_range, log_martians, rp_filter, routing flush, +# bootp_relay, proxy_arp, secure_redirects, accept_source_route +# icmp_echo_ignore_broadcasts, ipfrag_time) +# # Tip: Set this to "no" until you have verified that you have got a # configuration which works for you. Then set this to "yes" and keep it # if everything still works. (It should!) ;-) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Remember to have fun...