Shorewall Features
- Uses Netfilter's connection tracking facilities for stateful
packet filtering.
- Can be used in a wide range of router/firewall/gateway
applications.
- Completely customizable using configuration files.
- No limit on the number of network interfaces.
- Allows you to partitions the network into zones and gives you complete
control over the connections permitted between each pair of
zones.
- Multiple interfaces per zone and multiple zones per interface
permitted.
- Supports nested and overlapping zones.
- QuickStart Guides
(HOWTOs) to help get your first firewall up and running quickly
- A GUI is available via Webmin 1.060 and later (http://www.webmin.com)
- Extensive documentation
included in the .tgz and .rpm downloads.
- Flexible address management/routing support (and you can
use all types in the same firewall):
- Blacklisting of
individual IP addresses and subnetworks is supported.
- Operational
support:
- Commands to start, stop and clear the firewall
- Supports status monitoring with an audible
alarm when an "interesting" packet is detected.
- Wide variety of informational commands.
- VPN Support
- Support for Traffic
Control/Shaping integration.
- Wide support for different GNU/Linux Distributions.
- Media Access Control (MAC)
Address Verification
- Traffic Accounting
Last updated 10/29/2003 - Tom
Eastep
Copyright © 2001-2003 Thomas M. Eastep.