Age | Commit message (Collapse) | Author | |
---|---|---|---|
2010-01-27 | tweak previous: there was a word missing, but i've just changed | Jason McIntyre | |
the wording to match that of a similar piece of text already in this page; | |||
2010-01-27 | search for authpf.message in $USER dirs also | Todd T. Fries | |
from Rafal Bisingier ravbc at man dot pozman dot pl, ok beck@ | |||
2009-10-26 | "rdr" -> "match in...rdr-to" in example. | Stuart Henderson | |
2009-09-08 | Replace remaining occurrence of old PF syntax with "match...nat-to", | Stuart Henderson | |
and just talk about "rules" rather than "filter and translation rules". Spotted by/ok jmc@ | |||
2009-09-08 | Remove some nat-anchor, binat-anchor, rdr-anchor. Noticed by jmc@. | Stuart Henderson | |
ok henning@ | |||
2009-01-06 | Support group and login class in authpf.allow (%<group>, @<class>) | Ryan Thomas McBride | |
ok beck | |||
2008-03-18 | Fix mention of authpf_users table (s/authpf users/authpf_users/). | Michael Erdely | |
ok jmc@, mcbride@ | |||
2008-02-14 | Add authpf-noip, which allows multiple users to connect from a single IP; | Ryan Thomas McBride | |
forces users to write sane rulesets for this by not providing $user_ip or updating the authpf table. testing and prodding by mtu, manpage heavily worked over by jmc ok beck dhartmei henning | |||
2007-05-31 | convert to new .Dd format; | Jason McIntyre | |
2007-02-24 | license + copyright | Bob Beck | |
2006-10-23 | no need to use "keep state" and "flags S/SA" in pf rules, | Jason McIntyre | |
now that it is the default; ok henning mcbride camield (ftp-proxy bits) deraadt | |||
2006-01-07 | expand the section on ssh tunnelling machanisms; | Jason McIntyre | |
from michael knudsen | |||
2005-09-23 | default port for ftp-proxy is 8021; | Jason McIntyre | |
from johnb (pr #4520); ok deraadt@ ian@ | |||
2005-05-12 | Xr securelevel 7 | Jason McIntyre | |
from tamas tevesz; | |||
2005-01-04 | simplified FILTER AND TRANSLATION RULES; | Jason McIntyre | |
from michael knudsen; | |||
2004-09-15 | AllowTcpForwarding should be disabled for authpf users; | Jason McIntyre | |
plus a typo; from michael knudsen; ok beck@ | |||
2004-08-15 | document the use of "authpf/*" as anchor name for pf to process | Can Erkin Acar | |
sub rulesets added by authpf. ok dhartmei@, oh yes! henning@ | |||
2004-06-07 | consistently refer to the authpf_users table; | Jason McIntyre | |
noticed by die tuere; ok beck@ | |||
2004-04-28 | kill whitespace and make example consistent w/ rest of page; | Jason McIntyre | |
2004-04-28 | speed up -> sped up, from tedu@, ok beck@ | Cedric Berger | |
2004-04-28 | Put authpf user's IP addresses in the <authpf_users> table. | Cedric Berger | |
ok deraadt@ dhartmei@ markus@ mcbride@ | |||
2003-12-10 | - fix a few exit cases that would exit with no log | Bob Beck | |
- add username to added ruleset names when possible - add much needed example to man page showing how to use NAT with tagging to track NATed authpfed connections. ok henning@ dhartmei@, man page cleanup by jmc@ | |||
2003-08-17 | damn lies | Henning Brauer | |
2003-08-04 | ClientAliveInterval requires Protocol 2; | Jason McIntyre | |
noted by Marc Revial on misc@; ok markus@ | |||
2003-06-23 | authpf can handle binat nowadays; from Joel Knight | Henning Brauer | |
ok daniel | |||
2003-06-12 | - section reorder | Jason McIntyre | |
- macro fixes - kill whitespace at EOL - new sentence, new line | |||
2003-03-20 | replace some .Pp inside .Bd -literal block with empty line | David Krause | |
new sentence, new line fix login.conf indentation ok jmc@ | |||
2003-03-18 | ip address -> IP address; | Jason McIntyre | |
rtadvd.conf(5): positve -> positive; ok miod@ | |||
2003-03-11 | removed .Ic's which were giving postscript trouble; | Jason McIntyre | |
ok deraadt@ | |||
2003-03-10 | these pages all had bad section numbers in the .Xr's; | Jason McIntyre | |
lots of help and ok millert@ | |||
2003-03-06 | date should be written formally: .Dd Month day, year | David Krause | |
ok henning@ jmc@ | |||
2003-01-28 | typos; added white boldface to examples | Jason McIntyre | |
ok deraadt@ | |||
2002-12-29 | Mention $user_id, like $user_ip. | Daniel Hartmeier | |
2002-12-22 | Instead of inserting and removing rules at the top/bottom of the main | Daniel Hartmeier | |
ruleset, make authpf manage its rules inside anchors. | |||
2002-10-25 | - spelling/grammar | Camiel Dobbelaar | |
- nat rules are no longer in a seperate file, combine nat example - /32 on all addresses is clutter, since it's the default | |||
2002-07-27 | Typo; spotted by cdjones@novusordo.net. | Thomas Nordin | |
2002-06-24 | Fix more example rules | Daniel Hartmeier | |
2002-06-24 | When the man page contains such obvious stupid TRIVIAL bugs as this | Theo de Raadt | |
which I am fixing, it makes me wonder why the hell is the shown example not something that someone has actually TRIED? Is it not possible people are yammering so much about it on the mailing lists about problems because the people who wrote this don't even check if the man page is CORRECT? But No! Instead of fixing it, the they get email replies on the damned mailing list, and 8 hours later, someone ELSE pipes up with another problem! Why don't you lame asses take responsibility for the problem at hand, CHECK IF THE MAN PAGE IS RIGHT, and instead of replying to the people who post, instead JUST FIX THE DOCUMENTATION PROBLEMS? Or should I remove authpf before you get the idea? | |||
2002-06-24 | "quick log" -> "log quick" in example rules, from Rudolfo Munguia | Daniel Hartmeier | |
2002-06-16 | Remove nat.conf(5) reference. | Miod Vallat | |
2002-06-11 | Update man page to reality, grammar, and style fixes. from ckuethe@ualberta.ca | Kjell Wooding | |
ok beck@ | |||
2002-05-21 | clean | Theo de Raadt | |
2002-04-15 | fix a typo; from andrew@neep.com.au | Peter Valchev | |
2002-04-06 | root checks are removed now that we moved the per-user dir, | Bob Beck | |
docs need to reflect this | |||
2002-04-05 | move location of per-user config files; beck ok | Theo de Raadt | |
2002-04-05 | ensure that rules files are owned and writable only by root, | Bob Beck | |
along their entire path, change docs accordingly. This ensures that people don't accidentally use the $HOME config files to override real settings unless root meant to do it. | |||
2002-04-02 | We don't like 'OPTIONS' anymore. | Mike Pechkin | |
.Sh OPTIONS -> .Sh CONFIGURATION millert@ ok | |||
2002-04-02 | My part of the help: | Mike Pechkin | |
o) don't use .Pp before/after .Sh; o) Start new sentence on a new line; o) Remove extra space in the end of the sentence; o) Fix .Pa usage; o) Fix .Bd usage; o) Use .Pp after .Ed, not blank line before .Ed; millert@ ok | |||
2002-04-01 | -Tattling is bad, users should be allowed to run anything on the system | Bob Beck | |
without it generating logs -exit with 0 and 1 instead of EX_FOO -make read_config (with the test and exit) the first thing that happens in main, no openlog or memset first. | |||
2002-04-01 | remove a redundant word remove | Michael Shalayeff | |