mirror of
https://gitlab.com/shorewall/code.git
synced 2024-12-22 14:20:40 +01:00
Try to make zone definition clearer
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@3911 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
parent
adf1444150
commit
d62671b379
@ -13,10 +13,10 @@
|
||||
<surname>Eastep</surname>
|
||||
</author>
|
||||
|
||||
<pubdate>2005-09-12</pubdate>
|
||||
<pubdate>2006-05-14</pubdate>
|
||||
|
||||
<copyright>
|
||||
<year>2003-2005</year>
|
||||
<year>2003-2006</year>
|
||||
|
||||
<holder>Thomas M. Eastep</holder>
|
||||
</copyright>
|
||||
@ -127,7 +127,7 @@ net The Internet
|
||||
loc Your Local Network
|
||||
dmz Demilitarized Zone</programlisting>
|
||||
|
||||
<para>Zones are defined in the <ulink
|
||||
<para>Zones are declared and given a type in the <ulink
|
||||
url="Documentation.htm#Zones"><filename
|
||||
class="directory">/etc/shorewall/</filename><filename>zones</filename></ulink>
|
||||
file.</para>
|
||||
@ -232,8 +232,8 @@ $FW net ACCEPT</programlisting> The above policy will:
|
||||
</listitem>
|
||||
</itemizedlist></para>
|
||||
|
||||
<para>The simplest way to define a zone is to associate the zone with a
|
||||
network interface using the <ulink
|
||||
<para>The simplest way to define the hosts in a zone is to associate the
|
||||
zone with a network interface using the <ulink
|
||||
url="Documentation.htm#Interfaces"><filename>/etc/shorewall/interfaces</filename></ulink>
|
||||
file. In the three-interface sample, the three zones are defined using
|
||||
that file as follows:</para>
|
||||
|
@ -15,7 +15,7 @@
|
||||
</author>
|
||||
</authorgroup>
|
||||
|
||||
<pubdate>2006-05-08</pubdate>
|
||||
<pubdate>2006-05-12</pubdate>
|
||||
|
||||
<copyright>
|
||||
<year>2006</year>
|
||||
@ -99,7 +99,8 @@
|
||||
</listitem>
|
||||
</orderedlist>
|
||||
|
||||
<para>All of the Linux systems run SuSE 10.0 or SuSE 10.1 Beta.</para>
|
||||
<para>Most of the Linux systems run SuSE 10.0 or SuSE 10.1 Beta; my
|
||||
personal Linux desktop system runs Ubuntu "Breezy Badger".</para>
|
||||
|
||||
<para>If you are unfamiliar with Xen networking, I recommend that you read
|
||||
the first section of the companion <ulink url="Xen.html">Xen and
|
||||
@ -785,7 +786,8 @@ $EXT_IF 30 6*full/10 6*full/10 3
|
||||
# PORT(S)
|
||||
1:110 192.168.0.0/22 $EXT_IF #Our internel nets get priority
|
||||
#over the server
|
||||
1:130 206.124.146.177 $EXT_IF tcp - 873
|
||||
1:130 206.124.146.177 $EXT_IF tcp - 873 #Throttle rsync traffic to the
|
||||
#Shorewall Mirrors.
|
||||
#LAST LINE -- ADD YOUR ENTRIES BEFORE THIS ONE -- DO NOT REMOVE</programlisting></para>
|
||||
</blockquote>
|
||||
</section>
|
||||
|
Loading…
Reference in New Issue
Block a user