diff --git a/manpages/shorewall-rules.xml b/manpages/shorewall-rules.xml index e10bce0da..f0eef1007 100644 --- a/manpages/shorewall-rules.xml +++ b/manpages/shorewall-rules.xml @@ -715,8 +715,10 @@ 2. No port ranges are included or your kernel and iptables contain extended multiport match support. - Otherwise, a separate rule will be generated for each - port. + Otherwise, unless you are using Shorewall-perl, a separate rule + will be generated for each port. Shorewall-perl does not + automatically break up lists into individual rules. @@ -752,8 +754,10 @@ 2. No port ranges are included or your kernel and iptables contain extended multiport match support. - Otherwise, a separate rule will be generated for each - port. + Otherwise, unless you are using Shorewall-perl, a separate + rule will be generated for each port. Shorewall-perl does not + automatically break up lists into individual rules. diff --git a/manpages/shorewall.conf.xml b/manpages/shorewall.conf.xml index adc386d3a..38797571b 100644 --- a/manpages/shorewall.conf.xml +++ b/manpages/shorewall.conf.xml @@ -705,6 +705,19 @@ + + LOGTAGONLY=[Yes|No] + + + Using the default LOGFORMAT, chain names may not exceed 11 + characters or truncation of the log prefix may occur. Longer chain + names may be used with log tags if you set LOGTAGONLY=Yes. With + LOGTAGONLY=Yes, if a log tag is specified then the tag is included + in the log prefix in place of the chain name. + + + MACLIST_DISPOSITION=[ACCEPT|