From 207d51de552ddd5b7f75d67ed5b8829e3357257e Mon Sep 17 00:00:00 2001 From: Ad Schellevis Date: Tue, 24 Dec 2024 17:06:41 +0100 Subject: [PATCH] Firewall: Automation: Filter - add max-src-nodes, max-src-states options for https://github.com/opnsense/core/issues/8143 --- .../OPNsense/Firewall/forms/dialogFilterRule.xml | 14 ++++++++++++++ .../mvc/app/models/OPNsense/Firewall/Filter.xml | 7 ++++++- 2 files changed, 20 insertions(+), 1 deletion(-) diff --git a/src/opnsense/mvc/app/controllers/OPNsense/Firewall/forms/dialogFilterRule.xml b/src/opnsense/mvc/app/controllers/OPNsense/Firewall/forms/dialogFilterRule.xml index 1258c368dc..27570965f2 100644 --- a/src/opnsense/mvc/app/controllers/OPNsense/Firewall/forms/dialogFilterRule.xml +++ b/src/opnsense/mvc/app/controllers/OPNsense/Firewall/forms/dialogFilterRule.xml @@ -154,6 +154,20 @@ State Timeout in seconds (TCP only) true + + rule.max-src-nodes + + text + Limits the maximum number of source addresses which can simultaneously have state table entries. + true + + + rule.max-src-states + + text + Limits the maximum number of simultaneous state entries that a single source address can create with this rule. + true + rule.nopfsync diff --git a/src/opnsense/mvc/app/models/OPNsense/Firewall/Filter.xml b/src/opnsense/mvc/app/models/OPNsense/Firewall/Filter.xml index 73afc51d38..20a0b439f1 100644 --- a/src/opnsense/mvc/app/models/OPNsense/Firewall/Filter.xml +++ b/src/opnsense/mvc/app/models/OPNsense/Firewall/Filter.xml @@ -141,8 +141,13 @@ 1 - 65536 + + 1 + + + 1 +