ipset-6.36-lp152.4.6 RPM for x86_64

From OpenSuSE Leap 15.2 for x86_64

Name: ipset Distribution: openSUSE Leap 15.2
Version: 6.36 Vendor: openSUSE
Release: lp152.4.6 Build date: Sat May 16 15:32:13 2020
Group: Productivity/Networking/Security Build host: lamb25
Size: 37339 Source RPM: ipset-6.36-lp152.4.6.src.rpm
Summary: Netfilter ipset administration utility
IP sets are a framework inside the Linux kernel, which can be
administered by the ipset utility. Depending on the type, currently
an IP set may store IP addresses, (TCP/UDP) port numbers or IP
addresses with MAC addresses in a way, which ensures lightning speed
when matching an entry against a set.

ipset can:
* store multiple IP addresses or port numbers and match against the
  collection by iptables at one swoop;
* dynamically update iptables rules against IP addresses or ports
  without performance penalty;
* express complex IP address and ports based rulesets with one single
  iptables rule and benefit from the speed of IP sets






* Wed Jan 30 2019
  - add ipset-6.36_service_names_for_ports.patch to fix parsing
    service names for ports. Parsing is attempted both for numbers
    and service names and the temporary stored error message
    triggered to reset the state parameters about the set
* Sat Mar 03 2018
  - Update to new upstream release 6.36
    * Adding a IPv4 range x.x.x.x– could lead to
      memory exhaustion, which has been fixed.
  - Drop 0001-build-do-install-libipset-args.h.patch (merged)
* Mon Jan 22 2018
  - Add 0001-build-do-install-libipset-args.h.patch [boo#1077037].
* Sat Jan 06 2018
  - Update to new upstream release 6.35
    * Userspace revision handling is reworked
    * Backport patch: netfilter: ipset: use nfnl_mutex_is_locked
    * Missing nfnl_lock()/nfnl_unlock() is added to
    * netfilter: ipset: add resched points during set listing
    * Fix "don't update counters" mode when counters used at the
    * netfilter: ipset: Fix race between dump and swap
* Sat Sep 23 2017
  - Update to new upstream release 6.34
    * Reset state after a command failed, when multiple ones
      are issued.
    * Handle padding attribute properly in userspace.
    * Test to check the fix to add an IPv4 range containing more
      than 2^31 addresses.
  - Remove ipset-6.33-export-func.diff (merged)
* Sun Sep 17 2017
  - Update to new upstream release 6.33
    * Report if the option is supported by a newer kernel release
  - Add ipset-6.33-export-func.diff
* Fri Sep 15 2017
  - fix build for Factory
* Fri Mar 17 2017
  - Update to new upstream release 6.31
    * ipset: avoid kernel null pointer exception in ipset list:set
    * fix bug: sometimes valid entries in hash:* types of sets were
  - Update to new upstream release 6.32
    * fix possible truncated output in ipset output buffer handling
* Thu Oct 20 2016
  - Update to new upstream release 6.30
    * hash:ipmac type support added to ipset
* Wed Mar 16 2016
  - Update to new upstream release 6.29
    * Fix race condition in ipset save, swap and delete
* Sat Mar 12 2016
  - Update to new upstream release 6.28
    * Test added to check,iface to be matched in
    hash:net,iface type
    * Check IPSET_ATTR_ETHER netlink attribute length
    * Fix set:list type crash when flush/dump set in parallel
    * Allow a 0 netmask with hash_netiface type
  - Restore unreviewed deletion of KMP production,
    undo spec-cleaner refucktoring
  - Add ipset-destdir.diff
* Mon Jan 18 2016
  - update to 6.27:
    * kernel part changes
    * fix reported memory size for hash:* types
    * fix hash type expire: release empty hash bucket block
    * fix hash type expiration: incorrect index fixed
    * collapse same condition body to a single one
    * fix extension alignment
    * compatibility: include linux/export.h when needed
    * compatibility: make sure vmalloc.h is included for kvfree()
    * compatibility: Fix detecting 'struct net' in 'struct tcf_ematch'
    * compatibility: Protect definition of RCU_INIT_POINTER in
      compatibility header file
    * netfilter: ipset: Fix sleeping memory allocation in atomic
      context (Nikolay Borisov)
    * userspace changes
    * handle uint64_t alignment issue in ipset tool
  - disable KMP build as we support the in-kernel version instead.
    Remove ipset-preamble file that is no longer needed [bsc#962345]
  - run spec-cleaner
* Sun Aug 30 2015
  - Update to new upstream release 6.26
    * Out of bound access in hash:net* types fixed
    * Make struct htype per ipset family
    * Optimize hash creation routine
* Thu Jun 25 2015
  - Update to new upstream release 6.25.1
    * Add element count to all set types header
    * Add element count to hash headers
    * Support linking libipset to C++ programs
    * When a single set is destroyed, make sure it cannot
    be grabbed by dump
    * Check CIDR value only when attribute is given
    * Permit CIDR equal to the host address CIDR in IPv6
* Mon Nov 24 2014
  - Update to new upstream release 6.24
    * Alignment problem between 64bit kernel 32bit userspace fixed
    * Potential read beyond the end of buffer resolved
    * Fix parallel resizing and listing of the same set
    * Introduce RCU in all set types instead of rwlock per set
    * Remove rbtree from hash:net,iface in order to run under RCU
    * Explicitly add padding elements to hash:net,net and
    * Allocate the proper size of memory when /0 networks are supported
    * Simplify cidr handling for hash:*net* types
    * Indicate when /0 networks are supported



