2010-12-30 21:01:46 +01:00
|
|
|
1) On systems running Upstart, shorewall-init cannot reliably secure
|
2010-12-30 20:47:25 +01:00
|
|
|
the firewall before interfaces are brought up.
|
2011-07-15 17:35:35 +02:00
|
|
|
|
|
|
|
2) A harmless 'unitialized variable' diagnostic is issued by the
|
|
|
|
compiler when it is displaying the capabilities.
|
|
|
|
|
2011-07-19 00:51:56 +02:00
|
|
|
3) As the result of a typo, an orphan filter chain named FORWAR can
|
|
|
|
be created under rare circumstances. This chain is deleted by
|
|
|
|
OPTIMIZE level 4.
|
|
|
|
|
|
|
|
3) The SNAT options --persistent and --randomize (/etc/shorewall/masq)
|
|
|
|
generate invalid iptables input.
|
|
|
|
|
|
|
|
|