From 5f1af929b1e024acc08a448ba1f420761fb7a02f Mon Sep 17 00:00:00 2001 From: judas_iscariote Date: Sun, 11 Sep 2005 22:54:52 +0000 Subject: [PATCH] minor updates for v3.0 git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@2659 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb --- Shorewall-docs2/troubleshoot.xml | 30 ++++++++++++++++++++---------- 1 file changed, 20 insertions(+), 10 deletions(-) diff --git a/Shorewall-docs2/troubleshoot.xml b/Shorewall-docs2/troubleshoot.xml index a809b7d03..163a00475 100644 --- a/Shorewall-docs2/troubleshoot.xml +++ b/Shorewall-docs2/troubleshoot.xml @@ -13,7 +13,7 @@ Eastep - 2005-03-22 + 2005-09-11 2001-2005 @@ -42,7 +42,7 @@ Check the FAQs. Check the FAQs for solutions to over - 30 common problems. + 50 common problems.
@@ -199,14 +199,14 @@ iptables: No chain/target/match by that name Multiple interfaces connected to the same HUB or Switch. Given the way that the Linux kernel respond to ARP who-has - requests, this type of setup does NOT work the way that you expect it - to. If you are running Shorewall version 1.4.7 or later, you can test - using this kind of configuration if you specify the does NOT work the + way that you expect it to. You can test using this kind of + configuration if you specify the arp_filter option in /etc/shorewall/interfaces - for all interfaces connected to the common hub/switch. Using such a - setup with a production firewall is strongly recommended - against. + for all interfaces connected to the common hub/switch. Using such a setup with a production firewall is strongly + recommended against.
@@ -326,7 +326,7 @@ ACCEPT dmz loc udp 53 #ACTION SOURCE DEST PROTO DEST # PORT(S) -AllowPing <source zone>   <destination zone> +Ping/ACCEPT <source zone>   <destination zone> The ramifications of this can be subtle. For example, if you have the following in <source zone>   <des #ACTION SOURCE DEST PROTO DEST # PORT(S) -DropPing net all +Ping/DROP net all @@ -441,6 +441,16 @@ DropPing net all Revision History + + 2.0 + + 2005-09-11 + + CR + + Updated for Shorewall 3.0 + + 1.9