2002-05-01 01:13:15 +02:00
|
|
|
#
|
2003-02-15 01:09:44 +01:00
|
|
|
# Shorewall 1.4 - /etc/shorewall/hosts
|
2002-05-01 01:13:15 +02:00
|
|
|
#
|
|
|
|
# WARNING: 90% of Shorewall users don't need to add entries to this
|
|
|
|
# file and 80% of those who try to add such entries get it
|
|
|
|
# wrong. Unless you are ABSOLUTELY SURE that you need entries
|
|
|
|
# in this file, don't touch it!
|
|
|
|
#
|
|
|
|
# This file is used to define zones in terms of subnets and/or
|
|
|
|
# individual IP addresses. Most simple setups don't need to
|
2003-02-11 02:34:52 +01:00
|
|
|
# (should not) place anything in this file. Note that if you
|
|
|
|
# assign one or more interfaces to a zone in /etc/shorewall/interfaces,
|
|
|
|
# the hosts/networks that you define for the zone in the file will be
|
|
|
|
# IN ADDITION to those interfaces.
|
2002-05-01 01:13:15 +02:00
|
|
|
#
|
|
|
|
# ZONE - The name of a zone defined in /etc/shorewall/zones
|
|
|
|
#
|
|
|
|
# HOST(S) - The name of an interface followed by a colon (":") and
|
|
|
|
# either:
|
|
|
|
#
|
|
|
|
# a) The IP address of a host
|
2003-02-13 15:59:34 +01:00
|
|
|
# b) A subnetwork in CIDR format
|
|
|
|
# (<subnet-address>/<mask width>)
|
2002-05-01 01:13:15 +02:00
|
|
|
#
|
2002-06-29 15:48:33 +02:00
|
|
|
# The interface must be defined in the
|
|
|
|
# /etc/shorewall/interfaces file.
|
|
|
|
#
|
2002-05-01 01:13:15 +02:00
|
|
|
# Examples:
|
|
|
|
#
|
|
|
|
# eth1:192.168.1.3
|
|
|
|
# eth2:192.168.2.0/24
|
|
|
|
#
|
|
|
|
# OPTIONS - A comma-separated list of options. Currently-defined
|
|
|
|
# options are:
|
|
|
|
#
|
2002-10-23 03:22:48 +02:00
|
|
|
# maclist - Connection requests from these hosts
|
|
|
|
# are compared against the contents of
|
|
|
|
# /etc/shorewall/maclist. If this option
|
|
|
|
# is specified, the interface must be
|
|
|
|
# an ethernet NIC and must be up before
|
|
|
|
# Shorewall is started.
|
2002-05-01 01:13:15 +02:00
|
|
|
#
|
|
|
|
#
|
|
|
|
#ZONE HOST(S) OPTIONS
|
|
|
|
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS LINE -- DO NOT REMOVE
|