Open 2.3.0 Development Thread

git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@2074 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
teastep 2005-05-02 20:54:43 +00:00
parent a07575ba89
commit 64677829d8
72 changed files with 73 additions and 73 deletions

View File

@ -1,4 +1,4 @@
Shoreline Firewall (Shorewall) Version 2.2 Shoreline Firewall (Shorewall) Version 2.3
----- ---- ----- ----
----------------------------------------------------------------------------- -----------------------------------------------------------------------------

View File

@ -1,5 +1,5 @@
# #
# Shorewall version 2.2 - Accounting File # Shorewall version 2.4 - Accounting File
# #
# /etc/shorewall/accounting # /etc/shorewall/accounting
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowAuth # Shorewall 2.4 /usr/share/shorewall/action.AllowAuth
# #
# This action accepts Auth (identd) traffic. # This action accepts Auth (identd) traffic.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowDNS # Shorewall 2.4 /usr/share/shorewall/action.AllowDNS
# #
# This action accepts DNS traffic. # This action accepts DNS traffic.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowFTP # Shorewall 2.4 /usr/share/shorewall/action.AllowFTP
# #
# This action accepts FTP traffic. See # This action accepts FTP traffic. See
# http://www.shorewall.net/FTP.html for additional considerations. # http://www.shorewall.net/FTP.html for additional considerations.

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowICMPs # Shorewall 2.4 /usr/share/shorewall/action.AllowICMPs
# #
# ACCEPT needed ICMP types # ACCEPT needed ICMP types
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowIMAP # Shorewall 2.4 /usr/share/shorewall/action.AllowIMAP
# #
# This action accepts IMAP traffic (secure and insecure): # This action accepts IMAP traffic (secure and insecure):
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowNNTP # Shorewall 2.4 /usr/share/shorewall/action.AllowNNTP
# #
# This action accepts NNTP traffic (Usenet) and encrypted NNTP (NNTPS) # This action accepts NNTP traffic (Usenet) and encrypted NNTP (NNTPS)
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowNTP # Shorewall 2.4 /usr/share/shorewall/action.AllowNTP
# #
# This action accepts NTP traffic (ntpd). # This action accepts NTP traffic (ntpd).
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowPCA # Shorewall 2.4 /usr/share/shorewall/action.AllowPCA
# #
# This action accepts PCAnywere (tm) # This action accepts PCAnywere (tm)
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowPOP3 # Shorewall 2.4 /usr/share/shorewall/action.AllowPOP3
# #
# This action accepts POP3 traffic (secure and insecure): # This action accepts POP3 traffic (secure and insecure):
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowPing # Shorewall 2.4 /usr/share/shorewall/action.AllowPing
# #
# This action accepts 'ping' requests. # This action accepts 'ping' requests.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowRdate # Shorewall 2.4 /usr/share/shorewall/action.AllowRdate
# #
# This action accepts remote time retrieval (rdate). # This action accepts remote time retrieval (rdate).
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowSMB # Shorewall 2.4 /usr/share/shorewall/action.AllowSMB
# #
# Allow Microsoft SMB traffic. You need to invoke this action in # Allow Microsoft SMB traffic. You need to invoke this action in
# both directions. # both directions.

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowSMTP # Shorewall 2.4 /usr/share/shorewall/action.AllowSMTP
# #
# This action accepts SMTP (email) traffic. # This action accepts SMTP (email) traffic.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowSNMP # Shorewall 2.4 /usr/share/shorewall/action.AllowSNMP
# #
# This action accepts SNMP traffic (including traps): # This action accepts SNMP traffic (including traps):
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowSSH # Shorewall 2.4 /usr/share/shorewall/action.AllowSSH
# #
# This action accepts secure shell (SSH) traffic. # This action accepts secure shell (SSH) traffic.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowTelnet # Shorewall 2.4 /usr/share/shorewall/action.AllowTelnet
# #
# This action accepts Telnet traffic. For traffic over the # This action accepts Telnet traffic. For traffic over the
# internet, telnet is inappropriate; use SSH instead # internet, telnet is inappropriate; use SSH instead

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowTrcrt # Shorewall 2.4 /usr/share/shorewall/action.AllowTrcrt
# #
# This action accepts Traceroute (for up to 30 hops): # This action accepts Traceroute (for up to 30 hops):
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowVNC # Shorewall 2.4 /usr/share/shorewall/action.AllowVNC
# #
# This action accepts VNC traffic for VNC display's 0 - 9. # This action accepts VNC traffic for VNC display's 0 - 9.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowVNCL # Shorewall 2.4 /usr/share/shorewall/action.AllowVNCL
# #
# This action accepts VNC traffic from Vncservers to Vncviewers in listen mode. # This action accepts VNC traffic from Vncservers to Vncviewers in listen mode.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.AllowWeb # Shorewall 2.4 /usr/share/shorewall/action.AllowWeb
# #
# This action accepts WWW traffic (secure and insecure): # This action accepts WWW traffic (secure and insecure):
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.Drop # Shorewall 2.4 /usr/share/shorewall/action.Drop
# #
# The default DROP common rules # The default DROP common rules
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.DropDNSrep # Shorewall 2.4 /usr/share/shorewall/action.DropDNSrep
# #
# This action silently drops DNS UDP replies # This action silently drops DNS UDP replies
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.DropPing # Shorewall 2.4 /usr/share/shorewall/action.DropPing
# #
# This action silently drops 'ping' requests. # This action silently drops 'ping' requests.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.DropSMB # Shorewall 2.4 /usr/share/shorewall/action.DropSMB
# #
# This action silently drops Microsoft SMB traffic # This action silently drops Microsoft SMB traffic
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.DropUPnP # Shorewall 2.4 /usr/share/shorewall/action.DropUPnP
# #
# This action silently drops UPnP probes on UDP port 1900 # This action silently drops UPnP probes on UDP port 1900
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.Reject # Shorewall 2.4 /usr/share/shorewall/action.Reject
# #
# The default REJECT action common rules # The default REJECT action common rules
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.RejectAuth # Shorewall 2.4 /usr/share/shorewall/action.RejectAuth
# #
# This action silently rejects Auth (tcp 113) traffic # This action silently rejects Auth (tcp 113) traffic
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/action.RejectSMB # Shorewall 2.4 /usr/share/shorewall/action.RejectSMB
# #
# This action silently rejects Microsoft SMB traffic # This action silently rejects Microsoft SMB traffic
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /etc/shorewall/action.template # Shorewall 2.4 /etc/shorewall/action.template
# #
# This file is a template for files with names of the form # This file is a template for files with names of the form
# /etc/shorewall/action.<action-name> where <action> is an # /etc/shorewall/action.<action-name> where <action> is an

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /etc/shorewall/actions # Shorewall 2.4 /etc/shorewall/actions
# #
# This file allows you to define new ACTIONS for use in rules # This file allows you to define new ACTIONS for use in rules
# (/etc/shorewall/rules). You define the iptables rules to # (/etc/shorewall/rules). You define the iptables rules to

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /usr/share/shorewall/actions.std # Shorewall 2.4 /usr/share/shorewall/actions.std
# #
# Please see http://shorewall.net/Actions.html for additional # Please see http://shorewall.net/Actions.html for additional
# information. # information.

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 -- Blacklist File # Shorewall 2.4 -- Blacklist File
# #
# /etc/shorewall/blacklist # /etc/shorewall/blacklist
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2-- Bogons File # Shorewall 2.4 -- Bogons File
# #
# /etc/shorewall/bogons # /etc/shorewall/bogons
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall version 2.2 - Default Config Path # Shorewall version 2.4 - Default Config Path
# #
# /usr/share/shorewall/configpath # /usr/share/shorewall/configpath
# #

View File

@ -1,5 +1,5 @@
############################################################################ ############################################################################
# Shorewall 2.2 -- /etc/shorewall/continue # Shorewall 2.4 -- /etc/shorewall/continue
# #
# Add commands below that you want to be executed after shorewall has # Add commands below that you want to be executed after shorewall has
# cleared any existing Netfilter rules and has enabled existing connections. # cleared any existing Netfilter rules and has enabled existing connections.

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 - /etc/shorewall/ecn # Shorewall 2.4 - /etc/shorewall/ecn
# #
# Use this file to list the destinations for which you want to # Use this file to list the destinations for which you want to
# disable ECN. # disable ECN.

View File

@ -28,7 +28,7 @@
# shown below. Simply run this script to revert to your prior version of # shown below. Simply run this script to revert to your prior version of
# Shoreline Firewall. # Shoreline Firewall.
VERSION=2.2.4 VERSION=2.3.0
usage() # $1 = exit status usage() # $1 = exit status
{ {

View File

@ -1,6 +1,6 @@
#!/bin/sh #!/bin/sh
# #
# The Shoreline Firewall (Shorewall) Packet Filtering Firewall - V2.2 # The Shoreline Firewall (Shorewall) Packet Filtering Firewall - V2.3
# #
# This program is under GPL [http://www.gnu.org/copyleft/gpl.htm] # This program is under GPL [http://www.gnu.org/copyleft/gpl.htm]
# #

View File

@ -1,6 +1,6 @@
#!/bin/sh #!/bin/sh
# #
# Shorewall 2.2 -- /usr/share/shorewall/functions # Shorewall 2.3 -- /usr/share/shorewall/functions
# Function to truncate a string -- It uses 'cut -b -<n>' # Function to truncate a string -- It uses 'cut -b -<n>'
# rather than ${v:first:last} because light-weight shells like ash and # rather than ${v:first:last} because light-weight shells like ash and

View File

@ -1,6 +1,6 @@
#!/bin/sh #!/bin/sh
# #
# Shorewall help subsystem - V2.2 # Shorewall help subsystem - V2.4
# #
# #
# This program is under GPL [http://www.gnu.org/copyleft/gpl.htm] # This program is under GPL [http://www.gnu.org/copyleft/gpl.htm]

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 - /etc/shorewall/hosts # Shorewall 2.4 - /etc/shorewall/hosts
# #
# THE ONLY TIME YOU NEED THIS FILE IS WHERE YOU HAVE MORE THAN # THE ONLY TIME YOU NEED THIS FILE IS WHERE YOU HAVE MORE THAN
# ONE ZONE CONNECTED THROUGH A SINGLE INTERFACE. # ONE ZONE CONNECTED THROUGH A SINGLE INTERFACE.

View File

@ -1,5 +1,5 @@
############################################################################ ############################################################################
# Shorewall 2.2 -- /etc/shorewall/init # Shorewall 2.4 -- /etc/shorewall/init
# #
# Add commands below that you want to be executed at the beginning of # Add commands below that you want to be executed at the beginning of
# a "shorewall start" or "shorewall restart" command. # a "shorewall start" or "shorewall restart" command.

View File

@ -1,7 +1,7 @@
#!/bin/sh #!/bin/sh
RCDLINKS="2,S41 3,S41 6,K41" RCDLINKS="2,S41 3,S41 6,K41"
# #
# The Shoreline Firewall (Shorewall) Packet Filtering Firewall - V2.2 # The Shoreline Firewall (Shorewall) Packet Filtering Firewall - V2.3
# #
# This program is under GPL [http://www.gnu.org/copyleft/gpl.htm] # This program is under GPL [http://www.gnu.org/copyleft/gpl.htm]
# #

View File

@ -1,5 +1,5 @@
############################################################################ ############################################################################
# Shorewall 2.2 -- /etc/shorewall/initdone # Shorewall 2.4 -- /etc/shorewall/initdone
# #
# Add commands below that you want to be executed during # Add commands below that you want to be executed during
# "shorewall start" or "shorewall restart" commands at the point where # "shorewall start" or "shorewall restart" commands at the point where

View File

@ -22,7 +22,7 @@
# Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA # Foundation, Inc., 675 Mass Ave, Cambridge, MA 02139, USA
# #
VERSION=2.2.4 VERSION=2.3.0
usage() # $1 = exit status usage() # $1 = exit status
{ {
@ -518,7 +518,7 @@ fi
if [ -f ${PREFIX}/etc/shorewall/started ]; then if [ -f ${PREFIX}/etc/shorewall/started ]; then
backup_file /etc/shorewall/started backup_file /etc/shorewall/started
else else
run_install -o $OWNER -g $GROUP -m 0600 started ${PREFIX}/etc/shorewall/started run_install -o $OWNERSHIP -m 0600 started ${PREFIX}/etc/shorewall/started
echo echo
echo "Started file installed as ${PREFIX}/etc/shorewall/started" echo "Started file installed as ${PREFIX}/etc/shorewall/started"
fi fi

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 -- Interfaces File # Shorewall 2.4 -- Interfaces File
# #
# /etc/shorewall/interfaces # /etc/shorewall/interfaces
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 - /etc/shorewall/ipsec # Shorewall 2.4 - /etc/shorewall/ipsec
# #
# This file defines the attributes of zones with respect to # This file defines the attributes of zones with respect to
# IPSEC. To use this file, you must be running a 2.6 kernel and # IPSEC. To use this file, you must be running a 2.6 kernel and

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 - MAC list file # Shorewall 2.4 - MAC list file
# #
# This file is used to define the MAC addresses and optionally their # This file is used to define the MAC addresses and optionally their
# associated IP addresses to be allowed to use the specified interface. # associated IP addresses to be allowed to use the specified interface.

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 - Masquerade file # Shorewall 2.4 - Masquerade file
# #
# /etc/shorewall/masq # /etc/shorewall/masq
# #

View File

@ -1,5 +1,5 @@
############################################################################## ##############################################################################
# Shorewall 2.2 /etc/shorewall/modules # Shorewall 2.4 /etc/shorewall/modules
# #
# This file loads the modules needed by the firewall. # This file loads the modules needed by the firewall.
# #

View File

@ -1,6 +1,6 @@
############################################################################## ##############################################################################
# #
# Shorewall 2.2 -- Network Address Translation Table # Shorewall 2.4 -- Network Address Translation Table
# #
# /etc/shorewall/nat # /etc/shorewall/nat
# #

View File

@ -1,6 +1,6 @@
############################################################################## ##############################################################################
# #
# Shorewall 2.2 -- Network Mapping Table # Shorewall 2.4 -- Network Mapping Table
# #
# /etc/shorewall/netmap # /etc/shorewall/netmap
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 /etc/shorewall/params # Shorewall 2.4 /etc/shorewall/params
# #
# Assign any variables that you need here. # Assign any variables that you need here.
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 -- Policy File # Shorewall 2.4 -- Policy File
# #
# /etc/shorewall/policy # /etc/shorewall/policy
# #

View File

@ -1,6 +1,6 @@
############################################################################## ##############################################################################
# #
# Shorewall 2.2 -- Proxy ARP # Shorewall 2.4 -- Proxy ARP
# #
# /etc/shorewall/proxyarp # /etc/shorewall/proxyarp
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 -- RFC1918 File # Shorewall 2.4 -- RFC1918 File
# #
# /etc/shorewall/rfc1918 # /etc/shorewall/rfc1918
# #

View File

@ -1,6 +1,6 @@
############################################################################## ##############################################################################
# #
# Shorewall 2.2 -- Hosts Accessible when the Firewall is Stopped # Shorewall 2.4 -- Hosts Accessible when the Firewall is Stopped
# #
# /etc/shorewall/routestopped # /etc/shorewall/routestopped
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall version 2.2 - Rules File # Shorewall version 2.4 - Rules File
# #
# /etc/shorewall/rules # /etc/shorewall/rules
# #

View File

@ -1,6 +1,6 @@
#!/bin/sh #!/bin/sh
# #
# Shorewall Packet Filtering Firewall Control Program - V2.2 # Shorewall Packet Filtering Firewall Control Program - V2.3
# #
# This program is under GPL [http://www.gnu.org/copyleft/gpl.htm] # This program is under GPL [http://www.gnu.org/copyleft/gpl.htm]
# #

View File

@ -1,5 +1,5 @@
############################################################################## ##############################################################################
# /etc/shorewall/shorewall.conf V2.2 - Change the following variables to # /etc/shorewall/shorewall.conf V2.4 - Change the following variables to
# match your setup # match your setup
# #
# This program is under GPL [http://www.gnu.org/copyleft/gpl.htm] # This program is under GPL [http://www.gnu.org/copyleft/gpl.htm]

View File

@ -1,5 +1,5 @@
%define name shorewall %define name shorewall
%define version 2.2.4 %define version 2.3.0
%define release 1 %define release 1
%define prefix /usr %define prefix /usr

View File

@ -1,5 +1,5 @@
############################################################################ ############################################################################
# Shorewall 2.2 -- /etc/shorewall/start # Shorewall 2.4 -- /etc/shorewall/start
# #
# Add commands below that you want to be executed after shorewall has # Add commands below that you want to be executed after shorewall has
# been started or restarted. # been started or restarted.

View File

@ -1,5 +1,5 @@
############################################################################ ############################################################################
# Shorewall 2.2 -- /etc/shorewall/started # Shorewall 2.4 -- /etc/shorewall/started
# #
# Add commands below that you want to be executed after shorewall has # Add commands below that you want to be executed after shorewall has
# been completely started or restarted. The difference between this # been completely started or restarted. The difference between this

View File

@ -1,5 +1,5 @@
############################################################################ ############################################################################
# Shorewall 2.2 -- /etc/shorewall/stop # Shorewall 2.4 -- /etc/shorewall/stop
# #
# Add commands below that you want to be executed at the beginning of a # Add commands below that you want to be executed at the beginning of a
# "shorewall stop" command. # "shorewall stop" command.

View File

@ -1,5 +1,5 @@
############################################################################ ############################################################################
# Shorewall 2.2 -- /etc/shorewall/stopped # Shorewall 2.4 -- /etc/shorewall/stopped
# #
# Add commands below that you want to be executed at the completion of a # Add commands below that you want to be executed at the completion of a
# "shorewall stop" command. # "shorewall stop" command.

View File

@ -1,5 +1,5 @@
# #
# Shorewall version 2.2 - Traffic Control Rules File # Shorewall version 2.4 - Traffic Control Rules File
# #
# /etc/shorewall/tcrules # /etc/shorewall/tcrules
# #

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 -- /etc/shorewall/tos # Shorewall 2.4 -- /etc/shorewall/tos
# #
# This file defines rules for setting Type Of Service (TOS) # This file defines rules for setting Type Of Service (TOS)
# #

View File

@ -2,7 +2,7 @@
RCDLINKS="2,S45 3,S45 6,K45" RCDLINKS="2,S45 3,S45 6,K45"
################################################################################ ################################################################################
# Script to create a gre or ipip tunnel -- Shorewall 2.2 # Script to create a gre or ipip tunnel -- Shorewall 2.4
# #
# Modified - Steve Cowles 5/9/2000 # Modified - Steve Cowles 5/9/2000
# Incorporated init {start|stop} syntax and iproute2 usage # Incorporated init {start|stop} syntax and iproute2 usage

View File

@ -1,5 +1,5 @@
# #
# Shorewall 2.2 - /etc/shorewall/tunnels # Shorewall 2.4 - /etc/shorewall/tunnels
# #
# This file defines IPSEC, GRE, IPIP and OPENVPN tunnels. # This file defines IPSEC, GRE, IPIP and OPENVPN tunnels.
# #

View File

@ -26,7 +26,7 @@
# You may only use this script to uninstall the version # You may only use this script to uninstall the version
# shown below. Simply run this script to remove Seattle Firewall # shown below. Simply run this script to remove Seattle Firewall
VERSION=2.2.4 VERSION=2.3.0
usage() # $1 = exit status usage() # $1 = exit status
{ {