2befe64a0c
Firewall:
- On service initialize/install, create an idempotent inbound allow rule
("OrchestrAD") for the configured listen port, scoped to RFC 1918 private
ranges plus CGNAT (10/8, 172.16/12, 192.168/16, 100.64/10). The rule is
deleted-then-added so it always reflects the current port, and removed on
service uninstall. Best-effort (needs admin; the MSI custom action and
service run elevated); no-op off Windows. Verified the netsh rule lands
with the expected port and remote-address scoping.
MSI:
- Skip the license/EULA page (Welcome now goes straight to the install
directory), since it was blank. A standard short notice is kept in
license.rtf only so the stock license control resolves at build time.
Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
11 lines
679 B
Plaintext
11 lines
679 B
Plaintext
{\rtf1\ansi\deff0{\fonttbl{\f0 Segoe UI;}}
|
|
\f0\fs20
|
|
OrchestrAD\line
|
|
\line
|
|
Copyright (c) Grace Solutions. All rights reserved.\line
|
|
\line
|
|
This software is provided "as is", without warranty of any kind, express or implied, including but not limited to the warranties of merchantability, fitness for a particular purpose and noninfringement. In no event shall the authors or copyright holders be liable for any claim, damages or other liability arising from, out of or in connection with the software or the use or other dealings in the software.\line
|
|
\line
|
|
By installing this software you agree to use it in accordance with your organization's policies and applicable law.\line
|
|
}
|