


firewall - properly handle interface matcher when VRF interface is specified.firewall - include "connection-mark", "connection-state", and "packet-mark" when packet logging is enabled.firewall - fixed IPv6/Firewall/RAW functionality.firewall - fixed IPv6 NAT functionality when processing GRE traffic on TILE devices.firewall - added support for IPv6/Firewall/NAT action=src-nat rules.firewall - added "srcnat" and "dstnat" flags to IPv6/Firewall/Connection table.

