diff --git a/Shorewall/manpages/shorewall-rules.xml b/Shorewall/manpages/shorewall-rules.xml index ba1f2cfd3..d8d116fb3 100644 --- a/Shorewall/manpages/shorewall-rules.xml +++ b/Shorewall/manpages/shorewall-rules.xml @@ -993,19 +993,18 @@ - all[+][-] + all[+] all, without the - "-" means "All Zones, including the firewall zone". If - the "-" is included, the firewall zone is omitted. + "-" means "All Zones, including the firewall zone". Normally all omits intra-zone traffic, but intra-zone traffic can be included specifying "+". - any[+][-] + any[+] any is equivalent @@ -1259,6 +1258,15 @@ + + all+!dmz + + + All but the dmz zone + and applies to intrazone traffic. + + + net:^CN @@ -1349,19 +1357,18 @@ - all[+][-] + all[+] all, without the - "-" means "All Zones, including the firewall zone". If - the "-" is included, the firewall zone is omitted. + "-" means "All Zones, including the firewall zone". Normally all omits intra-zone traffic, but intra-zone traffic can be included specifying "+". - any[+][-] + any[+] any is equivalent @@ -1573,7 +1580,7 @@ If the DEST zone is a bport zone, then either: - the SOURCE must be , or + the SOURCE must be , or