--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2021-3272730035
2021-12-03 01:53:06.981653
--------------------------------------------------------------------------------
Name : iptables-epel
Product : Fedora EPEL 9
Version : 1.8.7
Release : 26.el9.1
URL :
https://www.netfilter.org/projects/iptables
Summary : Tools for managing Linux kernel packet filtering capabilities
Description :
The iptables utility controls the network packet filtering code in the
Linux kernel. If you need to set up firewalls and/or IP masquerading,
you should install this package.
--------------------------------------------------------------------------------
Update Information:
Provides the missing legacy subpackages of iptables on EL9
--------------------------------------------------------------------------------
ChangeLog:
* Tue Nov 30 2021 Michel Alexandre Salim <salimma(a)fedoraproject.org> - 1.8.7-26.1
- Fork c9s' iptables so we can build and ship legacy subpackages in EPEL
* Mon Oct 11 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-26
- tests/shell: Assert non-verbose mode is silent
- nft: Fix for non-verbose check command
* Wed Oct 6 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-25
- ebtables: Dump atomic waste
- doc: ebtables-nft.8: Adjust for missing atomic-options
- nft: Use xtables_malloc() in mnl_err_list_node_add()
* Fri Oct 1 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-24
- Add missing readlink required for iptables-nft(post)
* Mon Aug 9 2021 Mohan Boddu <mboddu(a)redhat.com> - 1.8.7-23
- Rebuilt for IMA sigs, glibc 2.34, aarch64 flags
Related: rhbz#1991688
* Thu Aug 5 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-22
- nft-services must not depend on specific arch's build
* Thu Aug 5 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-21
- Build services sub-packages as noarch
* Fri Jul 30 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-20
- Make nft-services obsolete nft-compat to fix upgrade path
* Thu Jul 29 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-19
- Build iptables-services on C9S only
- Use systemd_ordering in nft-services, too
- Drop compat package, nft-services serves well for that purpose
- Make legacy unconditionally provide iptables, it's not built on RHEL
* Wed Jul 28 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-18
- Make iptables-nft-services require iptables-services to avoid confusion
- Add deprecation notice to iptables-extensions man page as well
* Mon Jul 12 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-17
- Provide a compat package to fix upgrade path from RHEL8
* Mon Jul 5 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-16
- Review systemd unit file
* Fri Jul 2 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-15
- doc: Improve deprecation notices a bit
- nft: cache: Sort chains on demand only
- nft: Increase BATCH_PAGE_SIZE to support huge rulesets
* Fri Jun 25 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-14
- doc: Add deprecation notices to all relevant man pages
* Wed Jun 16 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-13
- extensions: sctp: Fix nftables translation
- nft: Fix bitwise expression avoidance detection
- iptables-nft: fix -Z option
- Do not build legacy sub-packages on RHEL
* Thu Jun 10 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-12
- arptables-nft-helper: Remove bashisms
- ebtables-helper: Drop unused variable, add a missing quote
- extensions: libxt_string: Avoid buffer size warning for strncpy()
- libxtables: Introduce xtables_strdup() and use it everywhere
- extensions: libebt_ip6: Use xtables_ip6parse_any()
- iptables-apply: Drop unused variable
- nft: Avoid buffer size warnings copying iface names
- nft: Avoid memleak in error path of nft_cmd_new()
- libxtables: Fix memleak in xtopt_parse_hostmask()
- extensions: libebt_ip6: Drop unused variables
- libxtables: Drop leftover variable in xtables_numeric_to_ip6addr()
* Wed May 12 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-11
- Fix License name in spec file
- Eliminate inet_aton() and inet_ntoa()
- nft-arp: Make use of ipv4_addr_to_string()
- Make legacy sub-packages obsolete older non-legacy ones
- Fix dates in changelog
- iptables.init: Fix functionality for iptables-nft
- iptables.init: Ignore sysctl files not suffixed '.conf'
- iptables.init: Drop unused NEW_MODUTILS check
- iptables.init: Drop some trailing whitespace
* Fri Apr 23 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-10
- Add provides to iptables-nft-services
* Wed Apr 21 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-9
- Add nft-services subpackage
* Mon Apr 19 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-8
- Drop hacks to maintain upgrade path
* Fri Apr 16 2021 Mohan Boddu <mboddu(a)redhat.com> - 1.8.7-7
- Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937
* Tue Mar 23 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-6
- Restore alternatives configuration after upgrade
- Fix license location
* Tue Mar 23 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-5
- Fix upgrade path with package rename
- Add missing dependencies to iptables-nft package
* Tue Feb 16 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-4
- Drop bootstrap code again
- Drop workarounds for F24 and lower
- Fix iptables-utils summary
- Ship iptables-apply with iptables-utils
- Reduce files sections by use of globbing
- Ship common man pages with iptables-libs
- Ship *-translate man pages with iptables-nft
- Move legacy iptables binaries, libraries and headers into sub-packages
- Introduce compat sub-package to help with above transitions
- Drop libipulog header from devel package, this belongs to libnetfilter_log
- Do not ship internal headers in devel package
* Thu Jan 28 2021 Phil Sutter <psutter(a)redhat.com> - 1.8.7-3
- ebtables: Exit gracefully on invalid table names
* Tue Jan 26 2021 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.8.7-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild
* Sat Jan 16 2021 Kevin Fenzi <kevin(a)scrye.com> - 1.8.7-1
- Update to 1.8.7. Fixes rhbz#1916948
* Thu Nov 19 2020 Tom Stellard <tstellar(a)redhat.com> - 1.8.6-5
- Use make macros
* Tue Nov 17 2020 Phil Sutter <psutter(a)redhat.com> - 1.8.6-4
- ebtables: Fix for broken chain renaming
* Mon Nov 16 2020 Phil Sutter <psutter(a)redhat.com> - 1.8.6-3
- Drop obsolete StandardOutput setting from unit file
- Remove StandardError setting from unit file, its value is default
* Thu Nov 5 2020 Florian Weimer <fweimer(a)redhat.com> - 1.8.6-2
- Remove build dependency on autogen
* Sat Oct 31 2020 Kevin Fenzi <kevin(a)scrye.com> - 1.8.6-1
- Update to 1.8.6. Fixes bug #1893453
* Tue Aug 25 2020 Phil Sutter <psutter(a)redhat.com> - 1.8.5-3
- nft: cache: Check consistency with NFT_CL_FAKE, too
- nft: Fix command name in ip6tables error message
* Tue Jul 28 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.8.5-2
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_33_Mass_Rebuild
* Tue Jun 23 2020 Phil Sutter <psutter(a)redhat.com> - 1.8.5-1
- Rebase onto upstream version 1.8.5 plus two late fixes
- Drop explicit iptables-apply installation, upstream fixed that
- Ship ip6tables-apply along with iptables package
* Wed Feb 12 2020 Phil Sutter <psutter(a)redhat.com> - 1.8.4-7
- Move nft-specific extensions into iptables-nft package
- Move remaining extensions into iptables-libs package
- Make iptables-nft depend on iptables-libs instead of iptables
- Add upstream-suggested fixes
* Wed Jan 29 2020 Fedora Release Engineering <releng(a)fedoraproject.org> - 1.8.4-6
- Rebuilt for
https://fedoraproject.org/wiki/Fedora_32_Mass_Rebuild
* Wed Jan 15 2020 Phil Sutter <psutter(a)redhat.com> - 1.8.4-5
- Raise Alternatives priority of nft variants to match legacy ones
- Add Provides lines to allow for iptables-nft as full legacy alternative
* Thu Dec 19 2019 Phil Sutter <psutter(a)redhat.com> - 1.8.4-4
- Drop leftover include in arptables-nft-helper
* Fri Dec 13 2019 Phil Sutter <psutter(a)redhat.com> - 1.8.4-3
- Remove dependencies on initscripts package
* Tue Dec 10 2019 Phil Sutter <psutter(a)redhat.com> - 1.8.4-2
- iptables-services requires /etc/init.d/functions
* Wed Dec 4 2019 Phil Sutter <psutter(a)redhat.com> - 1.8.4-1
- New upstream version 1.8.4
--------------------------------------------------------------------------------
This update can be installed with the "yum" update programs. Use
su -c 'yum update iptables-epel' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html
All packages are signed with the Fedora EPEL GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------