Some Things that Shorewall Cannot Do Tom Eastep 2004-03-05 2003 2004 Thomas M Eastep Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation License, Version 1.2 or any later version published by the Free Software Foundation; with no Invariant Sections, with no Front-Cover, and with no Back-Cover Texts. A copy of the license is included in the section entitled GNU Free Documentation License.
Shorewall Cannot: Be used to filter traffic through a Layer 2 Bridge (although experimental Shorewall Bridge code is available — check here for details). Act as a Personal Firewall that allows internet access by application. Be used with an Operating System other than Linux (version >= 2.4.0) Do content filtering: HTTP - better to use Squid for that. Email -- Install something like Postfix on your firewall and integrate it with SpamAssassin and Amavisd-new.
In Addition: Shorewall does not contain any support for Netfilter Patch-O-Matic features -- Shorewall only supports features from released kernels.