SuSEfirewall2-3.6.261-3.4.1<>,0PpMH/=„ts)v؁ -H%7<}6x`zN\rcx%ea,Y N3 +dGʄװB7i-fl3~ct۴VpS%pՂ&n=pnN)L7mɗfVm;'ƣewb G1*:L"M!J>E[mԶōI3aYzťˋ ukreD􍳅>9?d  R (MSZ$$ $ 0$ $  $$  $ $ $  $ 8  (89$:$>@FG$H$I $XDYP\`$]$^bcLdeflzCSuSEfirewall23.6.2613.4.1Stateful Packet Filter Using iptables and netfilterSuSEfirewall2 implements a packet filter that protects hosts and routers by limiting which services or networks are accessible on the host or via the router. SuSEfirewall2 uses the iptables/netfilter packet filtering infrastructure to create a flexible rule set for a stateful firewall. Authors: -------- Ludwig Nussel Marc HeuseM~build35/openSUSE 11.4openSUSEGPLv2+http://bugs.opensuse.orgProductivity/Networking/Securityhttp://en.opensuse.org/SuSEfirewall2linuxnoarch# SuSEfirewall2_init is no longer a boot.d script, need to remove # and add it again for i in etc/init.d/boot.d/S??SuSEfirewall2_init; do if [ -e "$i" ]; then /sbin/insserv -r -f SuSEfirewall2_init /sbin/insserv -f SuSEfirewall2_init break fi done if [ -e etc/sysconfig/SuSEfirewall2 ] \ && grep -q '^FW_MASQ_DEV="\$FW_DEV_EXT"$' etc/sysconfig/SuSEfirewall2; then sed 's/^FW_MASQ_DEV="\$FW_DEV_EXT"$/FW_MASQ_DEV="zone:ext"/' \ < etc/sysconfig/SuSEfirewall2 \ > etc/sysconfig/SuSEfirewall2.new \ && mv etc/sysconfig/SuSEfirewall2.new etc/sysconfig/SuSEfirewall2 \ && echo "FW_MASQ_DEV converted" fi # /sbin/insserv /etc/init.d # exit 0 /sbin/insserv /etc/init.dn b }Lx}"7*.aFH s큤큤AA큤A큤AAAA큤M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~M~f0f2119b7b5552931cda26191defd8fde76852ec3a2a69df68513bbfee8d1992675e64c461ee74132ef2ef0eafb35016eaacddd31a11e7968023b413bf44852513906b903df1d10e71f6fb5e6e9dc4ded376f74a3bb0b0df7bc7a1c3e22420adcff5b8d11c812331a67bc29c881707e490ff08c3d90714cfeebfa963f63207834c446cca055a887bb7dad94709bdd4374226fcca26406a328e9b71fae4b37ccc1c6cc721c4e54a3a95e96a9fe300b60ecab13446e4f2133cbd5172e274b63b4df7d4a6e86ffb231ca4df304bef5361e24ab380dd04b00d9af2969929561dc44a0a7c47c19db8b80b4578ad356089fbf28c1fbc92bbb3a2a54506a9336e3a908c3166e939be81398d5a9b605a2a111e2504ecdf68ea54be687fbcbcb4b3e71d73f258aceaa1c66cde08aa9e6fb97725d194d55d512a9ba36caa9b7df079bae19f8b086ef2d32e6b6fc616ff7efa70db3d4aa963537c06e639ee17f17e6729e4b0675e64c461ee74132ef2ef0eafb35016503e1156ecac973ac91581f67c60b4011576b823084278b54b2ca0aa54656dc0675e64c461ee74132ef2ef0eafb35016../scripts/SuSEfirewall2SuSEfirewall2/etc/init.d/SuSEfirewall2_setuprootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootrootSuSEfirewall2-3.6.261-3.4.1.src.rpmsysvinit(SuSEfirewall2_init)sysvinit(SuSEfirewall2_setup)SuSEfirewall2   @ fillupcoreutilsgrepdiffutilsinsservsed/bin/sedtextutilsfileutilsfilesystemiptablescoreutilsperlsysconfig/bin/sh/bin/shrpmlib(PayloadFilesHavePrefix)rpmlib(CompressedFileNames)/bin/bashrpmlib(PayloadIsLzma)4.0-13.0.4-14.4.6-14.8.0MUMGM6@M*L@Lr@Li(@L)@LKg@KzJJ@J`gJUJ.Nlnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.delnussel@suse.de- fix reverse direction of forwarding rules (bnc#679192)- introduce rpcusers file to allow statd to run as non-root (bnc#668553)- add zonein and zoneout parameters for FW_FORWARD - fix typos- don't start in runlevel 4 by default (bnc#656520) - cut off long zone names (bnc#644527) - fix and enhance output of log command (bnc#663262)- don't unload rules when using systemd- list some known rpc services as Should-Start - don't filter outgoing packets at all - fix an example (bnc#641907) - fix status check in SuSEfirewall2_init (bnc#628751)- don't use fillup anymore as it keeps corrupting the config file (bnc#340926)- remove "batch committing..." message - read defaults from separate file - warn if highports config options are set - finally drop 'highports' misfeature - remove kernel ipv6 module detection (bnc#617033) - silence warning about default zone (bnc#616841) - SuSEfirewall2-open: don't add values multiple times - Use multiprotocol xt_conntrack- only directories in /sys/class/net are real interfaces (bnc#609810)- add entry about drbd to FAQ - update docu - implement FW_BOOT_FULL_INIT- use new versioning scheme after switch of repo to git - update and rebuild docu - remove really old rc.config conversion code from spec file- fix spelling error in sysconfig file (bnc#537427) - polishing of log drop policy (bnc#538053) * drop multicast packets silently * separate drop rule for broadcast packets at end of chain * only consider NEW udp packets as critical * don't log INVALID packets as critical- implement runtime override of interface zones - allow disabling NOTRACK rules on lo (bnc#519526)- remove chkconfig calls (bnc#522268)- add note about use as bridging firewall - allow to set FW_ZONE_DEFAULT via config file - deprecate fw_custom_before_antispoofing and fw_custom_after_antispoofing, use fw_custom_after_chain_creation instead- add note that ulog doesn't work with IPv6 (bnc#442756) - fix version number in help text - allow service files to specify kernel modules and allow related packets - silence an error from bash if a service config file is not available (bnc#487870) - better wording for BROADCAST in template - update firewall hook script (patch by Marius)/bin/sh/bin/shbuild35 130229828067VC@?A9B>:=<;5834DEHLIMJPNKQOWXYZ[U3.6.261-3.4.1   SuSEfirewall2_initSuSEfirewall2_setupSuSEfirewall2TEMPLATESuSEfirewall2SuSEfirewall2firewallSuSEfirewall2-batchSuSEfirewall2-customSuSEfirewall2-oldbroadcastSuSEfirewall2-openSuSEfirewall2-qdiscSuSEfirewall2-rpcinfoSuSEfirewall2-showlogSuSEfirewall2rcSuSEfirewall2SuSEfirewall2defaults50-default.cfgrpcusersSuSEfirewall2EXAMPLESEXAMPLES.htmlFAQFAQ.htmlLICENCEREADMEREADME.htmlSuSEfirewall2.sysconfigsusebooks.csssusehelpmetaManualsProductivitySuSEfirewall2.desktopsysconfig.SuSEfirewall2/etc/init.d//etc/sysconfig//etc/sysconfig/SuSEfirewall2.d/services//etc/sysconfig/network/if-up.d//etc/sysconfig/network/scripts//etc/sysconfig/scripts//sbin//usr/share//usr/share/SuSEfirewall2//usr/share/SuSEfirewall2/defaults//usr/share/doc/packages//usr/share/doc/packages/SuSEfirewall2//usr/share/susehelp//usr/share/susehelp/meta//usr/share/susehelp/meta/Manuals//usr/share/susehelp/meta/Manuals/Productivity//var/adm/fillup-templates/-fomit-frame-pointer -fmessage-length=0 -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector -funwind-tables -fasynchronous-unwind-tables -gobs://build.opensuse.org/openSUSE:11.4:Update:Test/standard/0f0cb944be540e074f6ed01578adef78-SuSEfirewall2drpmlzma5noarch-suse-linuxס.?p]"k%r.oK~'=+o7+T|ӦZ h-p*+'cJ^-Pj:I-ds)>:{=3WRSZ1ޞ} t)'6سBwcE[_Ǭ_ jp$#,%HmZ$F4)(ФabIKL%4B7!sZLV&'{M =YsTa2cd X}8]*cPeظ`&J%c)y}5%|[iy欁pl\Azs*6ZՅXG fGvNIKW)qz6Iu| \ӭ ~Q2> Fp"Ja, í~,9 c˅H}f*|Na&p֔Z3ƞbi-*,ے!IYG5B/yUgSeR&,xxn}آ[y!WY@c M';lXP{Fh$NKaL&^{`xJ9 6ؠegm 6 NaoZtO~t}t9@q# dշC!K:a4%X?,됟7=[7LPuPҼ d?|qq%,Bg4AbvZJ߸I1bl|"P8 YP\nKٚ*wWvz=YGW}juR*كMuh+kEu8i;ǥq)1i9T/._̛]X2 2vaDbk5 M[BuyS,/Vd+TB'%S9h6[ِzYx&lcX2e_b* J hKx{FAڃfh>r)KmTAqd>b/@̓XZ>ed>r1zaNO ~<pnW^Gw\I3E18cލt1a̓LCJ#"!F̀lT~1{O|r@ur ]icHlO5J:$c$\c1\R?YHruM"& 9&aڬu}xBJG%|is[枓Rn*;O-d>6ɫΫ'uu8u٨,&g`Z2#L4M_<_6sQ?M+!CeFIY>B][T3w1OZ}W 2{=4:n Y>!\(S"R/˷ͪu Wγ'.Tsom ־aЍ~ލiM?EU_ NF6&-/\V{>&;LN+3zs{:9Q!b/S) ̶Xc㧌Q sx91r-!teBKs X.~!w:t~dՁS׍VQM}7BiQx\ M[RA뾀 %q ȜJ4PSh W B{lk>5\h\ߜs ?&Buњilw'+>4JI/ͫ q~E%(q6>iF%PcC[ =^?$ϝ ,]9 )Ũ N&4zu?4/CHe}gY y͊f>!OǗh?TB_ 3_ٖg8GEQ_H9 G]?  v Me3Y_\@\5V{&0}]ܰK?@8hռPvy>r@I jN!z\S֝v e0 ӈy^a߯tg]jVwe}^Yba>`omP_Q *n)uLu[*f^ Ʃ`E, ;~ASHm [zbi3&&Y2i]9c؉ Aغ>uVimв.QEɃwBf)$~2ltiCmN{1`a8עazym.H? G bc9neռ1?=s57ÖxVЙF"HP#qUGOHn)f7S\$:U#)G21cُNpflTl$*MPU+hem&%i4sE #`پ]  t@V_ j6a2FtR[lT=}邫Æ"K`Λ}<)0E+Zx/K4&c46^_ &>B.^"iQU=HOw=^6!%3OPb:F}Z[⫥cwLuݲd~