diff --git a/Shorewall/manpages/shorewall-rules.xml b/Shorewall/manpages/shorewall-rules.xml index 7765761d6..e59b628dd 100644 --- a/Shorewall/manpages/shorewall-rules.xml +++ b/Shorewall/manpages/shorewall-rules.xml @@ -125,8 +125,10 @@ NEW - Packets in the NEW, INVALID and UNTRACKED states are processed - by rules in this section. + Packets in the NEW state are processed by rules in this + section. If the INVALID and/or UNTRACKED sections are empty or not + included, then the packets in the corresponding state(s) are also + processed in this section. @@ -260,7 +262,8 @@ - AUDIT[(accept|drop|reject)] + AUDIT[(accept|drop|reject)] Added in Shorewall 4.5.10. Audits the packet with the @@ -271,7 +274,11 @@ - A_ACCEPT, A_ACCEPT+ and A_ACCEPT! + A_ACCEPT, A_ACCEPT+ and A_ACCEPT! Added in Shorewall 4.4.20. Audited versions of ACCEPT, @@ -281,7 +288,8 @@ - A_DROP and A_DROP! + A_DROP and A_DROP! Added in Shorewall 4.4.20. Audited versions of DROP and @@ -291,7 +299,8 @@ - A_REJECT AND A_REJECT! + A_REJECT AND A_REJECT! Added in Shorewall 4.4.20. Audited versions of REJECT @@ -413,7 +422,7 @@ - HELPER + HELPER Added in Shorewall 4.5.7. This action requires that the @@ -467,7 +476,8 @@ - IPTABLES({iptables-target + IPTABLES({iptables-target [option ...]) @@ -656,8 +666,9 @@ - TARPIT [(tarpit | - honeypot | TARPIT [(tarpit | honeypot | reset)] diff --git a/Shorewall6/manpages/shorewall6-rules.xml b/Shorewall6/manpages/shorewall6-rules.xml index 8df91fc36..5e714450f 100644 --- a/Shorewall6/manpages/shorewall6-rules.xml +++ b/Shorewall6/manpages/shorewall6-rules.xml @@ -118,8 +118,10 @@ NEW - Packets in the NEW, INVALID and UNTRACKED states are processed - by rules in this section. + Packets in the NEW state are processed by rules in this + section. If the INVALID and/or UNTRACKED sections are empty or not + included, then the packets in the corresponding state(s) are also + processed in this section. @@ -233,7 +235,8 @@ - AUDIT[(accept|drop|reject)] + AUDIT[(accept|drop|reject)] Added in Shorewall 4.5.10. Audits the packet with the @@ -244,7 +247,8 @@ - A_ACCEPT, and A_ACCEPT! + A_ACCEPT, and A_ACCEPT! Added in Shorewall 4.4.20. Audited versions of ACCEPT @@ -254,7 +258,8 @@ - A_DROP and A_DROP! + A_DROP and A_DROP! Added in Shorewall 4.4.20. Audited versions of DROP and @@ -264,7 +269,8 @@ - A_REJECT AND A_REJECT! + A_REJECT AND A_REJECT! Added in Shorewall 4.4.20. Audited versions of REJECT @@ -392,7 +398,7 @@ - HELPER + HELPER Added in Shorewall 4.5.7. This action requires that the @@ -446,7 +452,8 @@ - IP6TABLES({ip6tables-target + IP6TABLES({ip6tables-target [option ...]) @@ -638,8 +645,9 @@ - TARPIT [(tarpit | - honeypot | TARPIT [(tarpit | honeypot | reset)]