feat(firewall): add IP set blocking convenience API with CIDR interval support and optional rule comments

This commit is contained in:
2026-04-26 15:05:50 +00:00
parent 75dacef68e
commit 6e7c0d90d8
9 changed files with 106 additions and 8 deletions
+8
View File
@@ -1,5 +1,13 @@
# Changelog
## 2026-04-26 - 1.2.0 - feat(firewall)
add IP set blocking convenience API with CIDR interval support and optional rule comments
- introduces firewall.blockIPSet() to create a set, populate it with IPs or CIDR ranges, and apply a single drop rule
- adds interval set support so CIDR entries can be stored in nftables sets
- supports optional comments on generated IP set match rules
- adds forced cleanup support and allows table existence checks without requiring prior initialization
## 2026-03-30 - 1.1.0 - feat(nft)
add source IP filtering for DNAT rules and expose table existence checks