<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
 
  <meta http-equiv="Content-Language" content="en-us">
 
  <meta http-equiv="Content-Type"
 content="text/html; charset=windows-1252">
 
  <meta name="GENERATOR" content="Microsoft FrontPage 5.0">
 
  <meta name="ProgId" content="FrontPage.Editor.Document">
  <title>Shorewall Prerequisites</title>
</head>
  <body>
  
<table border="0" cellpadding="0" cellspacing="0"
 style="border-collapse: collapse;" bordercolor="#111111" width="100%"
 id="AutoNumber1" bgcolor="#400169" height="90">
   <tbody>
    <tr>
     <td width="100%">     
      <h1 align="center"><font color="#ffffff">Shorewall Requirements</font></h1>
     </td>
   </tr>
 
  </tbody>
</table>
 
<ul>
   <li>A kernel that supports netfilter. I've tested with 2.4.2 - 2.4.20-pre6.
    <a href="kernel.htm">     Check here for kernel configuration       information.</a> 
     If you are looking for a firewall for use with 2.2 kernels, <a
 href="http://www.shorewall.net/seawall">     see       the Seattle Firewall
site</a>     .</li>
   <li>iptables 1.2 or later  but beware version 1.2.3 -- see the <a
 href="errata.htm">Errata</a>.   <font color="#ff0000"><b>WARNING: </b></font>The
buggy iptables version 1.2.3    is included in RedHat 7.2 and you should
upgrade to iptables 1.2.4 prior to    installing Shorewall. Version 1.2.4
is available   <a
 href="http://www.redhat.com/support/errata/RHSA-2001-144.html">from RedHat</a>
   and in the <a href="errata.htm">Shorewall Errata</a>. If you are going
to be    running kernel 2.4.18 or later, NO currently-available RedHat iptables
RPM    will work -- again, see the <a href="errata.htm">Shorewall Errata</a>.
  </li>
   <li>Some features require iproute ("ip" utility). The iproute package
is     included with most distributions but may not be installed by default.
The     official download site is <a
 href="ftp://ftp.inr.ac.ru/ip-routing" target="_blank">   <font
 face="Century Gothic, Arial, Helvetica">f</font>tp://ftp.inr.ac.ru/ip-routing</a>. 
  </li>
   <li>A Bourne shell or derivative such as bash or ash. Must have correct
      support for variable expansion formats ${<i>variable</i>%<i>pattern</i> 
   },        ${<i>variable</i>%%<i>pattern</i>}, ${<i>variable</i>#<i>pattern</i> 
    } and       ${<i>variable</i>##<i>pattern</i>}.</li>
   <li>The firewall monitoring display is greatly improved if you have awk
      (gawk) installed.</li>
 
</ul>
 
<p align="left"><font size="2">Last updated 9/19/2002 - <a
 href="support.htm">Tom Eastep</a></font></p>
  
<p align="left"><font face="Trebuchet MS"><a href="copyright.htm"> <font
 size="2">Copyright</font> � <font size="2">2001, 2002 Thomas M. Eastep.</font></a></font></p>
  <br>
</body>
</html>