Corrections suggested by Guy

git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@3042 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
teastep 2005-11-20 23:50:43 +00:00
parent 90ea2a4a5a
commit 37434f4d34
3 changed files with 27 additions and 11 deletions

View File

@ -15,7 +15,7 @@
</author> </author>
</authorgroup> </authorgroup>
<pubdate>2005-11-02</pubdate> <pubdate>2005-11-20</pubdate>
<copyright> <copyright>
<year>2002-2005</year> <year>2002-2005</year>
@ -34,6 +34,13 @@
</legalnotice> </legalnotice>
</articleinfo> </articleinfo>
<caution>
<para><emphasis role="bold">This article applies to Shorewall 3.0 and
later. If you are running a version of Shorewall earlier than Shorewall
3.0.0 then please see the documentation for that
release.</emphasis></para>
</caution>
<section> <section>
<title>Introduction</title> <title>Introduction</title>
@ -400,12 +407,11 @@ SSH/ACCEPT net $FW </programlisting>
<para><inlinegraphic fileref="images/BD21298_.gif" format="GIF" /></para> <para><inlinegraphic fileref="images/BD21298_.gif" format="GIF" /></para>
<para>The <ulink url="Install.htm">installation procedure</ulink> <para>The <ulink url="Install.htm">installation procedure</ulink>
configures your system to start Shorewall at system boot but beginning configures your system to start Shorewall at system boot but startup is
with Shorewall version 1.3.9 startup is disabled so that your system won't disabled so that your system won't try to start Shorewall before
try to start Shorewall before configuration is complete. Once you have configuration is complete. Once you have completed configuration of your
completed configuration of your firewall, you can enable Shorewall startup firewall, you must edit /etc/shorewall/shorewall.conf and set
by removing the file STARTUP_ENABLED=Yes.</para>
<filename>/etc/shorewall/startup_disabled</filename>.</para>
<important> <important>
<para><emphasis role="bold">Users of the .deb package must edit <para><emphasis role="bold">Users of the .deb package must edit

View File

@ -531,6 +531,16 @@ SSH/ACCEPT net $FW </programlisting>
<title>Revision History</title> <title>Revision History</title>
<para><revhistory> <para><revhistory>
<revision>
<revnumber>1.8</revnumber>
<date>2005-11-20</date>
<authorinitials>GM</authorinitials>
<revremark>Update for Shorewall 3.0</revremark>
</revision>
<revision> <revision>
<revnumber>1.7</revnumber> <revnumber>1.7</revnumber>

View File

@ -12,7 +12,7 @@
<surname>Eastep</surname> <surname>Eastep</surname>
</author> </author>
<pubdate>2005-11-10</pubdate> <pubdate>2005-11-20</pubdate>
<copyright> <copyright>
<year>2002-</year> <year>2002-</year>
@ -604,7 +604,7 @@ DNAT net loc:<emphasis>&lt;server local ip address&gt;</emphasis>[:<e
<para>You run a Web Server on computer 2 and you want to forward <para>You run a Web Server on computer 2 and you want to forward
incoming <acronym>TCP</acronym> port 80 to that system: incoming <acronym>TCP</acronym> port 80 to that system:
<programlisting>#ACTION SOURCE DEST PROTO DEST PORT(S) <programlisting>#ACTION SOURCE DEST PROTO DEST PORT(S)
Web/DNAT net loc:192.168.1.5</programlisting></para> Web/DNAT net loc:10.10.10.2</programlisting></para>
</example> <example label="2"> </example> <example label="2">
<title>FTP Server</title> <title>FTP Server</title>
@ -748,8 +748,8 @@ ACCEPT $FW <emphasis>&lt;destination zone&gt; &lt;protocol&gt; &lt;por
<para>You want to run a Web Server on your firewall system: <para>You want to run a Web Server on your firewall system:
<programlisting>#ACTION SOURCE DEST PROTO DEST PORT(S) <programlisting>#ACTION SOURCE DEST PROTO DEST PORT(S)
Web/ACCEPT net $FW Web/ACCEPT net $FW
Web/ACCEPT loc </programlisting>$FWThose two rules would of course be Web/ACCEPT loc $FW </programlisting>Those two rules would of
in addition to the rules listed above under <quote><link course be in addition to the rules listed above under <quote><link
linkend="cachingdns">You can configure a Caching Name Server on your linkend="cachingdns">You can configure a Caching Name Server on your
firewall</link></quote>.</para> firewall</link></quote>.</para>
</example> If you don't know what port and protocol a particular </example> If you don't know what port and protocol a particular