Tom Eastep
b573826226
Mention DHCPfwd in the DHCP doc
2010-12-01 11:37:40 -08:00
Tom Eastep
c0ba395276
Update IPSEC title
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-11-28 10:00:31 -08:00
Tom Eastep
095345f95c
Mention 'weak host model' in the Fool's firewall article
2010-11-27 11:14:51 -08:00
Tom Eastep
681529b664
Clarify 'switch' in the Fool's firewall article
2010-11-27 11:01:20 -08:00
Tom Eastep
2702d7f208
Implement header matching
2010-11-24 10:46:06 -08:00
Tom Eastep
972d00c300
Add another SNAT virtual alias example
2010-11-22 12:04:20 -08:00
Tom Eastep
93f9e8914c
Add another SNAT virtual alias example
2010-11-22 11:59:59 -08:00
Tom Eastep
9b31906c6c
Update bogus link in the features page
2010-11-21 21:40:56 -08:00
Tom Eastep
6083693181
Tweak FAQ 16c - LOGFILE
2010-11-21 19:37:54 -08:00
Tom Eastep
fdd1500971
Add FAQ 16c - LOGFILE
2010-11-21 12:05:28 -08:00
Tom Eastep
a17c47b017
Add FAQ 16b - dmesg
2010-11-21 10:48:23 -08:00
Tom Eastep
eac128b5e2
Add routes file to manpage indexes; modify links in the features page
2010-11-20 13:51:16 -08:00
Tom Eastep
e052951890
More /etc/shorewall/routes documentation
2010-11-17 17:27:48 -08:00
Tom Eastep
4ca1098e3e
Be more explicit about route rules with SOURCE lo
2010-11-15 21:03:53 -08:00
Tom Eastep
17cc0bad45
Mention IPv6 in the tcfilters section
2010-11-15 12:38:28 -08:00
Tom Eastep
c9737930a2
Complete Shared TC documentation
2010-11-14 14:48:16 -08:00
Tom Eastep
a1e3683651
Documentation updates
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-11-10 14:38:55 -08:00
Tom Eastep
8c1bdc803b
Fix typo in address-type section; add faq 94
2010-11-04 09:57:33 -07:00
Tom Eastep
e9b7b8acad
Add address-type info to config file basics doc
2010-11-03 16:31:50 -07:00
Tom Eastep
5b7a2f002a
Add helpers file to advice about modifying loaded modules
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-11-03 12:47:50 -07:00
Tom Eastep
d3f729c56e
Clarify applications running on the firewall section
2010-10-27 15:51:29 -07:00
Tom Eastep
54fdce9e22
Fix typos in Introduction
2010-10-26 07:32:50 -07:00
Tom Eastep
0f1370f265
Correct typo in upgrade issues
2010-10-21 07:57:39 -07:00
Tom Eastep
959b8f5167
Revise Vserver article
2010-10-10 08:29:19 -07:00
Tom Eastep
aad8a7b213
Clear FORWARD_CLEAR_MARK setting in the remaining config files
2010-10-09 11:31:19 -07:00
Tom Eastep
38851fe446
Delete obsolete options from shorewall.conf
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-04 07:44:28 -07:00
Tom Eastep
ac8c7ed7d4
Updating bridge documents
2010-10-03 14:12:38 -07:00
Tom Eastep
2599e44fca
More Tweaks to FAQ 93
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-03 13:03:11 -07:00
Tom Eastep
4c1c63617b
Tweak FAQ 93
2010-10-03 12:56:09 -07:00
Tom Eastep
e62033ed13
Add FAQ 93 re bridging.
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-03 12:52:46 -07:00
Tom Eastep
cee05d9763
Refine -lite handling of scfilter.
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-03 12:52:30 -07:00
Tom Eastep
432534a650
Eliminate need to restart -lite to extract scfilter
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-03 10:56:55 -07:00
Tom Eastep
5b86cbdabf
Document scfilter in the Extensions Scripts Doc
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-10-01 12:29:41 -07:00
Tom Eastep
468c918121
Correct grammar in FAQ 92
2010-09-28 08:05:18 -07:00
Tom Eastep
a7be406fb9
Add FAQ 92
2010-09-28 08:04:02 -07:00
Tom Eastep
26ec7cee1d
Update ipset doc with multiple match syntax
2010-09-21 06:59:55 -07:00
Tom Eastep
c21a4d786d
add ipset manpage to the index
2010-09-20 16:00:19 -07:00
Tom Eastep
1d650b41cd
Remove blacklisting by destination IP address support
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-15 15:24:58 -07:00
Tom Eastep
2ff06f5f0a
Update simple TC doc
2010-09-14 07:59:01 -07:00
Tom Eastep
9f786b7c59
Delete mention of triggers in ipset doc
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-12 08:01:54 -07:00
Tom Eastep
b937290740
Add version cautions to blacklisting doc
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-12 07:58:13 -07:00
Tom Eastep
7e8979157c
Update Features Page re: Virtualization
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-08 15:47:23 -07:00
Tom Eastep
2cb5aaeb07
Correct interface reference
2010-09-08 13:12:19 -07:00
Tom Eastep
a4606bee80
Pretty up Network Diagram -- exchange caption location
2010-09-08 12:57:35 -07:00
Tom Eastep
bbe5dae9b0
Pretty up Network Diagram some more
2010-09-08 12:44:40 -07:00
Tom Eastep
0907a7b6c2
Pretty up Network Diagram
2010-09-08 12:38:14 -07:00
Tom Eastep
7f72d66b90
A couple of documentation updates
2010-09-08 11:55:16 -07:00
Tom Eastep
8853de0c2e
Fix links to secmark manpages
2010-09-07 15:03:05 -07:00
Tom Eastep
8d63e04926
Yet more docunentation updates
2010-09-06 20:37:34 -07:00
Tom Eastep
50b4bd8dfe
More Blacklist and Secmark documentation updates
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-09-06 17:26:49 -07:00
Tom Eastep
c6f58ba924
Enhance SELinux support:
...
- Add state match
- Add user/group match
- Add examples to the man pages
2010-09-06 09:06:40 -07:00
Tom Eastep
f93413b2a7
Update Multi-ISP doc for variable name change in 4.4.8.
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-08-31 15:33:22 -07:00
Tom Eastep
8077c9e1c3
Add FAQ 91
2010-08-30 11:07:37 -07:00
Tom Eastep
c2558af9c8
Document and correct implementation of EXCLUSION_MASK
...
1. Require KLUDGEFREE if existing rule uses mark match
2. Pretty up the code
3. Use MASK_BITS rather than TC_BITS when calculating the offset of EXCLUSION_MASK
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-08-28 08:29:47 -07:00
Tom Eastep
6b0fa8b4e2
Change note about MARK_IN_FORWARD_CHAIN
2010-08-19 15:33:12 -07:00
Tom Eastep
baf8e21a80
Add reference to manual chains article for the compile extension
2010-08-17 09:23:43 -07:00
Tom Eastep
bc19a80ac4
Correct FAQ 2 for Shorewall-lite
2010-08-14 07:14:52 -07:00
Tom Eastep
1510e111c4
Fix typo in conf basics doc
2010-08-13 20:27:14 -07:00
Tom Eastep
000873575e
Update Shorewall Lite Doc
2010-08-11 15:59:24 -07:00
Tom Eastep
965ad7ced1
Minor tweaks to the IPAddrs module
2010-08-11 11:46:26 -07:00
Tom Eastep
0234564a1b
Add destination IP blacklisting
2010-08-10 17:33:50 -07:00
Tom Eastep
3ce8ff5741
Bump version to Beta 4
2010-08-01 16:10:32 -07:00
Tom Eastep
f75c5809b5
Advocate use of 'ip' to examine routing tables
2010-08-01 11:56:06 -07:00
Tom Eastep
967629569b
Taylor Universal config to work with Shorewall-init and streamline ruleset
...
- Make interface 'all' optional and set REQUIRE_INTERFACE=Yes
- Add COMPLETE option
- Set FASTACCEPT in Universal samples
- Reset SUBSYSLOCK in Universal samples
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-08-01 08:36:56 -07:00
Tom Eastep
a88e2afa69
Tweak the Universal documentation
2010-07-31 18:43:54 -07:00
Tom Eastep
c6404f1a74
Reword last title in Universal ruleset doc
2010-07-31 14:51:52 -07:00
Tom Eastep
ee5d2a56da
Add Universal doc
2010-07-31 13:52:09 -07:00
Tom Eastep
bebeba8cae
Document Universal Configuration and allow for empty LOGFILE
2010-07-31 12:45:43 -07:00
Tom Eastep
d483725474
Update Accounting doc
2010-07-29 16:49:40 -07:00
Tom Eastep
6a1fea3a40
Add 'user marks'
2010-07-27 11:02:36 -07:00
Tom Eastep
aac343b476
Document mark geometry capability
2010-07-27 08:05:54 -07:00
Tom Eastep
7f4a7372ef
Remove nic registration requirement for IRC channel
2010-07-24 16:04:21 -07:00
Tom Eastep
a9a19c4da6
Remove another link to a Russian-language page
2010-07-24 11:08:06 -07:00
Tom Eastep
242f13f6bd
Delete foreign language links -- docs are very out of date
2010-07-24 09:33:47 -07:00
Tom Eastep
9ab66c3b07
More config basic doc tweaks
2010-07-24 07:09:02 -07:00
Tom Eastep
039ac17fe6
Correct SOURCE/DEST section
2010-07-23 14:32:11 -07:00
Tom Eastep
93e5fc2deb
Correct SOURCE/DEST section
2010-07-23 14:19:05 -07:00
Tom Eastep
c2717b9eec
Correct SOURCE/DEST section
2010-07-23 14:17:38 -07:00
Tom Eastep
00352baba7
Add warning about Upstart
2010-07-23 07:38:28 -07:00
Tom Eastep
c536680bd6
Add FAQ 90
2010-07-21 13:31:43 -07:00
Tom Eastep
eb2dcb46cd
Remove mention of 4.5 from Manpages6 index
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-07-21 12:36:18 -07:00
Tom Eastep
46644a0336
Add instructions for disabling existing firewalls
2010-07-21 11:49:37 -07:00
Tom Eastep
d897635af5
Allow bizarre overriding of SOURCE/DEST with ipsets
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-07-20 16:03:12 -07:00
Tom Eastep
c9423491f2
Don't mention 4.5 on Manpages page
2010-07-19 15:11:55 -07:00
Tom Eastep
8eeb71dc1b
Fix inconsistencies in manpages
2010-07-19 14:45:05 -07:00
Tom Eastep
cbb524b067
Implement ADD/DEL commands
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-07-18 08:46:38 -07:00
Tom Eastep
d2bb96be88
Emphasize that you must have a Nic to post on the Shorewall channel
2010-07-18 07:34:03 -07:00
Tom Eastep
9977f778ad
Link to a better Netfilter Diagram
2010-07-15 11:07:14 -07:00
Tom Eastep
35a4b8e7f4
Update Vserver FAQ
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-07-05 13:12:06 -07:00
Tom Eastep
c8274f0538
Minor vserver doc update
2010-07-02 13:34:21 -07:00
Tom Eastep
ba535b8937
Correct IPv6 zones file in Vserver doc
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-07-01 15:56:34 -07:00
Tom Eastep
f538aecd82
Update the Vserver article with IPv6 and a graphic
2010-07-01 15:13:29 -07:00
Tom Eastep
7dbf829e9b
Clean up Vserver doc
2010-07-01 07:22:54 -07:00
Tom Eastep
e4afc15370
Finish Vserver Implementation
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-06-30 20:35:46 -07:00
Tom Eastep
ac4349e930
Add more IPv6 configuration info
2010-06-27 17:46:12 -07:00
Tom Eastep
236269eafc
Add IPv6 example to the OpenVPN doc
2010-06-27 16:26:40 -07:00
Tom Eastep
ed72afd8a0
Add comment about the unfortunate name of the tcrules file
2010-06-25 06:33:14 -07:00
Tom Eastep
40f57bf926
Update Squid Document
2010-06-16 09:24:01 -07:00
Tom Eastep
625f254d02
Add tcfilters to manpage index
2010-06-10 06:15:15 -07:00
Tom Eastep
f50a609d1d
Update the UPnP document with the 4.4.10 changes.
...
Signed-off-by: Tom Eastep <teastep@shorewall.net>
2010-06-08 11:34:37 -07:00