Google
 
 
Home arrow Shorewall 2.1.10 Development Release

Main Menu
 Home
 Linux Articles
 FreeBSD Articles
 Apache Articles
 Perl Articles
 Other Articles
 Program Downloads
 Free Books
 News
 The Web Links
 Contact Us

Most Read
Automating SFTP using expect
FreeBSD PPTP VPN
Shorewall Router on Linux
SnortShorwall - Using Snort And Shorewall Together
Shorewall Stand Alone Firewall

Polls
Favorite Linux/BSD
Fedora
Mandrake
Debian
Slackware
Gentoo
Suse
FreeBSD
Other
  

Syndicate
Latest news direct to your desktop
RSS

Login Form
Username

Password

Remember me
Forgotten your password?
No account yet? Create one

Members Online
 Linux-BSD-Central Has a Total of 701 Members   Members (701) # Online
 We have 6 Guests Online. Guests 6
 We have 0 Users Online. Users 0

Online Users
No Users Online

Statistics
OS: Linux w
PHP: 5.2.9
MySQL: 5.0.91-community
Time: 14:40
Members: 701
Hits: 1324415
News: 277
WebLinks: 15



-->

Shorewall 2.1.10 Development Release   PDF  Print  E-mail 
Contributed by Chad Brandt  
Monday, 04 October 2004
This release fixes a problem with the blacklist loading and adds some new logging functionality

Problems corrected since 2.1.9

1)  With DELAYBLACKLISTLOAD=No, the blacklist was previously not
    loaded.

New Features sine 2.1.9

1) Using the default LOGFORMAT, chain names longer than 11 characters
    (such as in user-defined actions) may result in log prefix
    truncation. A new shorewall.conf action  LOGTAGONLY has been added
    to deal with this problem. When LOGTAGONLY=Yes, logging rules that
    specify a log tag will substitute the tag for the chain name in the
    log prefix.

    Example -- file /etc/shorewall/action.thisisaverylogactionname:

    Rule:

DROP:info:ftp 0.0.0.0/0 0.0.0.0/0 tcp     21

    Log prefix with LOGTAGONLY=No:

Shorewall:thisisaverylongacti

    Log prefix with LOGTAGONLY=Yes:

Shorewall:ftp:DROP

2) Shorewall now resets the 'accept_source_route' flag for all
    interfaces. If you wish to accept source routing on an interface,
    you must specify the new 'sourceroute' interface option in
    /etc/shorewall/interfaces.

After installing this release it appears an additional option has been added to the interface file. Here is the comment from the file

# logmartians  - turn on kernel martian logging (logging
#                                      of packets with impossible source
#                                      addresses. It is suggested that if you
#                                      set routefilter on an interface that
#                                      you also set logmartians. This option
#                                      may also be enabled globally in the
#                                      /etc/shorewall/shorewall.conf file.

Visit Shorewalls Web Site

 

Comments

Write Comment
Name:Guest
Title:
BBCode:Web AddressEmail AddressBold TextItalic TextUnderlined TextQuoteCodeOpen ListList ItemClose List
Comment:



Powered by AkoComment 1.0 beta 2!



Read More News



 
Google Ads



 

Check out TwistByte - The best mobile apps available For awesome Android and IPhone applications!!