Update the Vserver article for 5.0

Signed-off-by: Tom Eastep <teastep@shorewall.net>
This commit is contained in:
Tom Eastep 2016-02-19 10:26:10 -08:00
parent 9203c8a4a9
commit bc50c45e63

View File

@ -122,7 +122,7 @@ gateway:~#</programlisting>
<para>This is a diagram of the network configuration here at Shorewall.net <para>This is a diagram of the network configuration here at Shorewall.net
during the summer of 2010:</para> during the summer of 2010:</para>
<graphic align="center" fileref="images/Network2010a.png" /> <graphic align="center" fileref="images/Network2010a.png"/>
<para>I created a zone for the vservers as follows:</para> <para>I created a zone for the vservers as follows:</para>
@ -138,8 +138,9 @@ vpn ipv4 #OpenVPN clients
<para><filename>/etc/shorewall/interfaces</filename>:</para> <para><filename>/etc/shorewall/interfaces</filename>:</para>
<programlisting>#ZONE INTERFACE BROADCAST OPTIONS <programlisting>?FORMAT 2
<emphasis role="bold">net eth1 detect routeback,dhcp,optional,routefilter=0,logmartians,proxyarp=0,nosmurfs,upnp</emphasis> #ZONE INTERFACE OPTIONS
<emphasis role="bold">net eth1 routeback,dhcp,optional,routefilter=0,logmartians,proxyarp=0,nosmurfs,upnp</emphasis>
...</programlisting> ...</programlisting>
<para><filename>/etc/shorewall/hosts</filename>:</para> <para><filename>/etc/shorewall/hosts</filename>:</para>
@ -164,8 +165,7 @@ drct eth4:dynamic
<para><filename>/etc/shorewall6/zones</filename></para> <para><filename>/etc/shorewall6/zones</filename></para>
<programlisting>#ZONE TYPE OPTIONS IN OUT <programlisting>#ZONE TYPE OPTIONS IN_OPTIONS OUT_OPTIONS
# OPTIONS OPTIONS
fw firewall fw firewall
net ipv6 net ipv6
loc ipv6 loc ipv6
@ -175,8 +175,9 @@ vpn ipv6
<para><filename>/etc/shorewall6/interfaces</filename>:</para> <para><filename>/etc/shorewall6/interfaces</filename>:</para>
<programlisting>#ZONE INTERFACE BROADCAST OPTIONS <programlisting>?FORMAT 2
<emphasis role="bold">net sit1 detect tcpflags,forward=1,nosmurfs,routeback</emphasis> #ZONE INTERFACE OPTIONS
<emphasis role="bold">net sit1 tcpflags,forward=1,nosmurfs,routeback</emphasis>
...</programlisting> ...</programlisting>
<para><filename>/etc/shorewall6/hosts</filename>:</para> <para><filename>/etc/shorewall6/hosts</filename>:</para>
@ -204,7 +205,7 @@ vpn ipv6
Proxy NDP support in Shorewall 4.4.16 and later. The new network diagram Proxy NDP support in Shorewall 4.4.16 and later. The new network diagram
is as shown below:</para> is as shown below:</para>
<graphic align="center" fileref="images/Network2011.png" /> <graphic align="center" fileref="images/Network2011.png"/>
<para>This change was accompanied by the following additions to <para>This change was accompanied by the following additions to
<filename>/etc/shorewall6/proxyndp</filename>:</para> <filename>/etc/shorewall6/proxyndp</filename>:</para>