More website changes

git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9287 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
teastep 2009-01-15 19:42:43 +00:00
parent aa1079655c
commit 06f1422781
11 changed files with 85 additions and 365 deletions

View File

@ -122,12 +122,12 @@
<itemizedlist>
<listitem>
<para><ulink
url="http://www.m0n0.ch/wall/">http://www.m0n0.ch/wall/</ulink></para>
url="http://www.kmyfirewall.org/">kmyfirewall</ulink></para>
</listitem>
<listitem>
<para><ulink
url="http://www.fs-security.com/">http://www.fs-security.com/</ulink></para>
url="http://www.fs-security.com/">firestarter</ulink></para>
</listitem>
</itemizedlist>

View File

@ -20,6 +20,8 @@
<copyright>
<year>2007</year>
<year>2009</year>
<holder>Thomas M. Eastep</holder>
</copyright>
@ -79,6 +81,11 @@
<para>does a much more thorough job of checking the configuration to
avoid run-time errors.</para>
</listitem>
<listitem>
<para>supports creating either Ipv4 or Ipv6 firewalls (Shorewall 4.2.4
and later).</para>
</listitem>
</itemizedlist>
<para>Both compilers may be installed on your system and you can use
@ -88,7 +95,7 @@
<section id="Install">
<title>Installing Shorewall Version 4</title>
<para>Shorewall 4 contains four packages:</para>
<para>Shorewall 4 contains six packages:</para>
<itemizedlist>
<listitem>
@ -110,6 +117,16 @@
run scripts generated by either Shorewall-perl or
Shorewall-shell.</para>
</listitem>
<listitem>
<para>Shorewall6 - The utilities for creating and operating an Ipv6
firewall. Requires Shorewall-perl.</para>
</listitem>
<listitem>
<para>Shorewall6-lite - Ipv6 equivalent of Shorewall Lite. Can run
scripts generated by Shoreall-perl 4.2.4 and later.</para>
</listitem>
</itemizedlist>
<para>If you upgrade to Shorewall Version 4, you must install
@ -165,185 +182,6 @@
document</ulink> for details.</para>
</section>
<section id="Compatibility">
<title>Package Compatibility Matrix</title>
<para>The following table indicates which versions of the compilers are
supported by each version of Shorewall-common.</para>
<informaltable>
<tgroup cols="3">
<colspec colname="_2" colnum="2" />
<colspec colname="_3" />
<tbody>
<row>
<entry align="center"><emphasis
role="bold">Package</emphasis></entry>
<entry align="center" nameend="_3" namest="_2"
valign="middle"><emphasis role="bold">Compatible
With</emphasis></entry>
</row>
<row>
<entry>Shorewall-common 4.0.0-RC1</entry>
<entry>Shorewall-shell 4.0.0-RC1</entry>
<entry>Shorewall-perl 4.0.0-RC1</entry>
</row>
<row>
<entry morerows="1" valign="middle">Shorewall-common
4.0.0-RC2</entry>
<entry>Shorewall-shell 4.0.0-RC1</entry>
<entry>Shorewall-perl 4.0.0-RC1</entry>
</row>
<row>
<entry>Shorewall-shell 4.0.0-RC2</entry>
<entry>Shorewall-perl 4.0.0-RC2</entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.0</entry>
<entry>Shorewall-shell 4.0.0 - 4.0.3</entry>
<entry>Shorewall-perl 4.0.0 - 4.0.2</entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.1</entry>
<entry>Shorewall-shell 4.0.0 - 4.0.3</entry>
<entry>Shorewall-perl 4.0.0 - 4.0.1</entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.2<footnote>
<para>Shorewall-common/lib.base should have
patch-common-4.0.2-1.diff applied.</para>
</footnote></entry>
<entry>Shorewall-shell 4.0.0 - 4.0.3</entry>
<entry>Shorewall-perl 4.0.0 - 4.0.2</entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.3</entry>
<entry>Shorewall-shell 4.0.0 - 4.0.3</entry>
<entry>Shorewall-perl 4.0.0 - 4.0.3<footnote>
<para>Shorewall-perl 4.0.3 requires Shorewall-common 4.0.3 if
capabilities files are to be used. Shorewall-perl 4.0.3 also
requires Shorewall-lite 4.0.3.</para>
</footnote></entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.4</entry>
<entry>Shorewall-shell 4.0.0 - 4.0.4</entry>
<entry>Shorewall-perl 4.0.0 - 4.0.4<footnote>
<para>Shorewall-perl 4.0.4 requires Shorewall-common 4.0.3 or
later if capabilities files are to be used. Shorewall-perl
4.0.4 also requires Shorewall-lite 4.0.3 or later.</para>
</footnote></entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.5</entry>
<entry>Shorewall-shell 4.0.5</entry>
<entry>Shorewall-perl 4.0.5<footnote>
<para>Shorewall-perl 4.0.5 also requires Shorewall-lite
4.0.5.</para>
</footnote></entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.6</entry>
<entry>Shorewall-shell 4.0.5 - 4.0.6</entry>
<entry>Shorewall-perl 4.0.5 - 4.0.6<footnote>
<para>Shorewall-perl 4.0.6 also requires Shorewall-lite
4.0.6.</para>
</footnote></entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.7</entry>
<entry>Shorewall-shell 4.0.5 - 4.0.9</entry>
<entry>Shorewall-perl 4.0.5 - 4.0.9<footnote>
<para>Shorewall-perl 4.0.6 and later require Shorewall-lite
4.0.6 or later</para>
</footnote></entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.8</entry>
<entry>Shorewall-shell 4.0.5 - 4.0.9</entry>
<entry>Shorewall-perl 4.0.5 - 4.0.9<footnote>
<para>Shorewall-perl 4.0.6 and later require Shorewall-lite
4.0.6 or later</para>
</footnote></entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.0.9-4.0.14</entry>
<entry>Shorewall-shell 4.0.5 - 4.0.14</entry>
<entry>Shorewall-perl 4.0.5 - 4.0.14<footnote>
<para>Shorewall-perl 4.0.6 and later require Shorewall-lite
4.0.6 or later</para>
</footnote></entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.2.0</entry>
<entry>Shorewall-shell 4.2.0 </entry>
<entry>Shorewall-perl 4.2.0</entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.2.1</entry>
<entry>Shorewall-shell 4.2.1</entry>
<entry>Shorewall-perl 4.2.1</entry>
</row>
<row>
<entry valign="middle">Shorewall-common 4.2.2</entry>
<entry>Shorewall-shell 4.2.2</entry>
<entry>Shorewall-perl 4.2.2</entry>
</row>
</tbody>
</tgroup>
</informaltable>
</section>
<section id="CompilerSelection">
<title>Compiler Selection</title>

View File

@ -7,14 +7,6 @@
<articleinfo>
<title>Shorewall Support Guide</title>
<authorgroup>
<author>
<firstname>Tom</firstname>
<surname>Eastep</surname>
</author>
</authorgroup>
<pubdate><?dbtimestamp format="Y/m/d"?></pubdate>
<copyright>
@ -54,9 +46,9 @@
<note>
<para>Shorewall versions earlier than 4.0.0 are no longer supported;
we will try to help but I will personally not spend time reading
earlier code to try to help you solve a problem and I will not
release a patch to correct any defect found.</para>
we will try to help but we will not spend time reading earlier code
to try to help you solve a problem and we will not release a patch
to correct any defect found.</para>
</note>
</listitem>
@ -68,7 +60,7 @@
<listitem>
<para>The <ulink url="FAQ.htm">FAQ</ulink> has solutions to more than
50 common problems.</para>
70 common problems.</para>
</listitem>
<listitem>

View File

@ -7,12 +7,6 @@
<articleinfo>
<title>Useful Links</title>
<author>
<firstname>Tom</firstname>
<surname>Eastep</surname>
</author>
<pubdate><?dbtimestamp format="Y/m/d"?></pubdate>
<copyright>

View File

@ -6,9 +6,9 @@
</head>
<body>
<h1 style="text-align: left;">Shorewall Documentation</h1>
<span style="font-weight: bold;">Tom Eastep</span><br>
<span style="font-weight: bold;">
</span>Copyright © 2005-2009 Thomas M. Eastep<br>
<span style="font-weight: bold;"></span>
<span style="font-weight: bold;"></span>Copyright © 2005-2009 Thomas M.
Eastep<br>
<p>Permission is granted to copy, distribute and/or modify this
document
under the terms of the GNU Free Documentation License, Version 1.2 or
@ -26,24 +26,22 @@ License</a></span>”.<br>
<hr style="width: 100%; height: 2px;"> <strong></strong>
<br>
<table style="text-align: left; width: 100%;" border="1" cellpadding="2"
cellspacing="2">
cellspacing="0">
<tbody>
<tr style="font-weight: bold;">
<td style="vertical-align: top; text-align: center;">Document<br>
</td>
<td style="vertical-align: top; text-align: center;">Shorewall 4.2<br>
</td>
<td style="vertical-align: top; text-align: center;">Shorewall 4.0<br>
</td>
<td style="vertical-align: top; text-align: center;">Shorewall 3.x<br>
</td>
<td style="vertical-align: top; text-align: left;">Description<br>
</td>
<th style="vertical-align: top; text-align: center;">Shorewall
4.2<br>
</th>
<th style="vertical-align: top; text-align: center;">Shorewall
4.0<br>
</th>
<th style="vertical-align: top; text-align: center;">Shorewall
3.x<br>
</th>
<th style="vertical-align: top; text-align: left;">Description<br>
</th>
</tr>
<tr>
<td style="vertical-align: top;"><span style="font-weight: bold;">Alphabetical
Index</span><br>
</td>
<td style="vertical-align: top; text-align: center;"><span
style="font-weight: bold;"></span><strong><a
href="Documentation_Index.html"><strong>Index</strong></a></strong></td>
@ -51,15 +49,14 @@ Index</span><br>
href="Documentation_Index.html"><strong>Index</strong></a></strong></td>
<td style="vertical-align: top; text-align: center;"><a
style="font-weight: bold;" href="3.0/Documentation_Index.html">Index</a></td>
<td style="vertical-align: top;">Index to over 70 articles with
<td style="vertical-align: top;">Alphabetical index to over 70
articles with
topics ranging from Accounting to Xen</td>
</tr>
<tr>
<td style="vertical-align: top;"><span style="font-weight: bold;">FAQs</span><br>
</td>
<td
style="vertical-align: top; text-align: center; font-weight: bold;"><a
href="3.0/FAQ.htm"><strong><a href="FAQ.htm"><strong>FAQs</strong></a></strong></a></td>
href="3.0/FAQ.htm"><strong></strong></a><strong><a href="FAQ.htm"><strong>FAQs</strong></a></strong></td>
<td style="vertical-align: top; text-align: center;"><a
href="FAQ.htm"><strong>FAQs</strong></a> </td>
<td
@ -70,12 +67,10 @@ asked
questions</td>
</tr>
<tr>
<td style="vertical-align: top;"><span style="font-weight: bold;">IPv4
Man pages</span><br>
</td>
<td style="vertical-align: top; text-align: center;"><a
href="3.0/manpages/Manpages.html"><span style="font-weight: bold;"></span></a><strong></strong><strong><strong><a
href="Manpages.html"><strong>Manpages</strong></a></strong></strong> </td>
href="Manpages.html"><strong>IPv4 Manpages</strong></a></strong></strong>
</td>
<td
style="vertical-align: top; text-align: center; font-weight: bold;"><a
href="../../../../../4.0/Manpages.html">Manpages</a></td>
@ -85,11 +80,8 @@ Man pages</span><br>
and Shorewall-lite man pages</td>
</tr>
<tr>
<td style="vertical-align: top;"><span style="font-weight: bold;">IPv6
Man Pages</span><br>
</td>
<td style="vertical-align: top; text-align: center;"><a
href="Manpages6.html"><span style="font-weight: bold;">Manpages</span></a>
href="Manpages6.html"><span style="font-weight: bold;">IPv6 Manpages</span></a>
</td>
<td style="vertical-align: top; text-align: center;">-<br>
</td>

View File

@ -9,9 +9,7 @@
<body>
<h1 style="text-align: left;">Shorewall News and Announcements<br>
</h1>
<p>
<span style="font-weight: bold;">Tom Eastep<br>
<br>
<p><span style="font-weight: bold;">
</span>Copyright © 2001-2008 Thomas M. Eastep</p>
<p>Permission is granted to copy, distribute and/or modify this
document

View File

@ -22,8 +22,15 @@ license is included in the section entitled <span
style="text-decoration: underline;">"</span><a href="GnuCopyright.htm"
target="_self">GNU Free Documentation License</a>".<br>
</p>
<p>2009-01-14</p>
<p>2009-01-15</p>
<hr>
<h3 style="margin-left: 40px;"><a href="#Notice">Attention Users of
Shorewall's Multi-ISP Feature</a></h3>
<div style="margin-left: 40px;">
<h3><a href="#Notice1">Attention Users of BRIDGING=Yes</a></h3>
<h3><a href="#Kernel2.4">Attention Kernel 2.4 Users</a></h3>
</div>
<hr style="width: 100%; height: 2px;">
<h2><a name="Notice">Important Notice to Users of Shorewall's Multi-ISP
Feature</a></h2>
<p>A bug in Shorewall versions 3.2.0-3.2.10, 3.4.0-3.4.6 and

View File

@ -25,20 +25,10 @@ to Contribute</a><br>
href="copyright.htm">Copyright©&nbsp;2001-2009</a></small><small><a
href="copyright.htm"><br>
Thomas&nbsp;M.&nbsp;Eastep</a></small></p>
<!-- shorewall logo -->
<div style="text-align: center;"><img alt="Shorweall Logo"
style="border: 0px solid ; width: 88px; height: 31px;"
src="images/gareth-davies-logo3_88x31.png" align="middle"><br>
</div>
<small><a
href="mailto:webmaster@shorewall.net?subject=Website%20Comments"></a><br>
<small>
</small>
<div style="text-align: center;"><small><br>
Site search by</small>
<div style="text-align: center;"><small>Site search</small>
<br>
<a href="http://www.google.com/"><img
src="http://www.google.com/logos/Logo_40wht.gif" alt="Google"
style="border: 0px solid ; width: 100px; height: 41px;" align="middle"></a><br>
</div>
<table
style="background-color: rgb(255, 255, 240); width: 100%; height: 70px;"
@ -56,6 +46,9 @@ Site search by</small>
href="http://dir.gmane.org/gmane.comp.security.shorewall">Mailing
List Archive Search</a><br>
</div>
<br>
<div style="text-align: center;"><br>
<img alt="Shorweall Logo"
style="border: 0px solid ; width: 88px; height: 31px;"
src="images/gareth-davies-logo3_88x31.png" align="middle"></div>
</body>
</html>

View File

@ -9,9 +9,9 @@
<meta http-equiv="Content-Language" content="en-us">
</head>
<body dir="ltr" lang="en-US">
<h1 align="left">Shorewall Download</h1>
<p><b>Tom Eastep<br>
<br>
<h1 align="left">Shorewall Download<br>
</h1>
<p><b>
</b>Copyright ©&nbsp; 2001-2009 Thomas M. Eastep</p>
<p>Permission is granted to copy, distribute and/or modify this
document
@ -28,12 +28,14 @@ license is included in the section entitled “<a href="GnuCopyright.htm"
<h2>Table of Contents</h2>
<p><b><a href="#Which">Package Information</a><br>
<a href="#Sites">Download Sites</a><br>
</b><a href="#SVN"><b><a href="download.htm#Updates">Finding Updates
</b><a href="#SVN"><b></b></a><b><a href="download.htm#Updates">Finding
Updates
that Correct Known Problems</a><br>
</b></a><b><a href="#SVN">SVN</a></b></p>
</b><b><a href="#SVN">SVN</a></b></p>
<hr>
<h2><a name="Which"></a>Package Information</h2>
<p><b>Before trying to install, I strongly urge you to read and print a
<p><b>Before trying to install, we strongly urge you to read and print
a
copy
of the <a href="shorewall_quickstart_guide.htm">Shorewall QuickStart
Guide</a> for the configuration that most closely matches your own.</b>
@ -114,12 +116,6 @@ single execution of the
rpm utility.<br>
</p>
<p>Here are the <a href="Install.htm">installation instructions</a>.</p>
<p><span style="font-weight: bold;">You probably don't want to install
both a
Shorewall compiler and Shorewall Lite on the same system. See the <a
href="CompiledPrograms.html#Lite">Shorewall Lite Documentation</a> for
details.</span><br>
</p>
<p>Once you've printed the appropriate QuickStart Guide, download the
appropriate modules:</p>
<ul>
@ -214,7 +210,7 @@ using our public key <a
</p>
<dl>
<dd>
<table border="2" cellpadding="2" cellspacing="2">
<table border="0" cellpadding="2" cellspacing="0">
<tbody>
<tr>
<td>
@ -349,12 +345,9 @@ using our public key <a
</dl>
<p style="margin-left: 0.42in;"><b>Redhat</b> and <b>Fedora</b> RPMS
provided
by Simon Matter: <a href="http://www.invoca.ch/pub/packages/shorewall/">http://www.invoca.ch/pub/packages/shorewall/</a><br>
by Simon Matter: <a href="http://www.invoca.ch/pub/packages/shorewall/">http://www.invoca.ch/pub/packages/shorewall/</a><b></b><br>
<br>
<b>Mandriva</b> RPMS provided by Jack Coates: <a
href="http://www.monkeynoodle.org/comp/net/shorewall/">http://www.monkeynoodle.org/comp/net/shorewall/</a><br>
<br>
<b>Slackware</b> packages created by JMedina. You can <a
<b>Slackware</b> packages created by Jorge Medina. You can <a
href="http://tuxjm.net/downloads/source/testing-10.2/">download them
from his
site</a>.<br>

View File

@ -22,7 +22,9 @@ license is included in the section entitled <span
style="text-decoration: underline;">"</span><a href="GnuCopyright.htm"
target="_self">GNU Free Documentation License</a>".<br>
</p>
<p>The Shorewall Logo is the work of Gareth Davies of <a target="_top"
<p>The <a target="_top"
href="http://wiki.shorewall.net/wiki/LogoDesignCompetition">Shorewall
Logo</a> is the work of Gareth Davies of <a target="_top"
href="http://thusa.co.za">Thusa</a> and is licensed under the Creative
Commons
Attribution-Share Alike 2.5 South Africa License. To view a copy of
@ -35,13 +37,13 @@ Francisco,
California 94105, USA.</p>
<p>2009-01-15</p>
<hr style="width: 100%; height: 2px;">
<h2>Table of Contents</h2>
<h3>On this page:<br>
</h3>
<p style="margin-bottom: 0in; margin-left: 0.4166in;"><a
href="shorewall_index.htm#Releases">Current Shorewall Releases</a><br>
<a href="shorewall_index.htm#GettingStarted">Getting Started with
Shorewall</a><br>
<a href="shorewall_index.htm#Info">Looking for Information?</a><br>
<a href="#Glossary">Glossary</a><br>
<a href="#WhatIs">What is Shorewall?</a><a href="#Info"></a><br>
<a href="#License">License</a></p>
<p style="margin-left: 0.42in;"></p>
@ -91,103 +93,14 @@ version (see above) then select the <a
closely
matches your environment and follow the step by step instructions.</p>
<h3><a name="Info"></a>Looking for Information?</h3>
<p style="margin-left: 0.42in;">The <a href="Documentation.html">Documentation
<p style="margin-left: 0.42in;">The <a href="Documentation_Index.html">Documentation
Index</a> is a good place to start as
is the Site Search in the frame to the left.</p>
<h3><a name="Glossary"></a>Glossary</h3>
<ul>
<li>
<p style="margin-bottom: 0in;"><a href="http://www.netfilter.org/"
target="_top">Netfilter</a> - the packet filter facility built into
the 2.4 and later Linux kernels.</p>
</li>
<li>
<p style="margin-bottom: 0in;">ipchains - the packet filter
facility built into the 2.2 Linux kernels. Also the name of the utility
program used to configure and control that facility. Netfilter can be
used in ipchains compatibility mode.</p>
</li>
<li>
<p>iptables - the utility program used to configure and control
Netfilter. The term 'iptables' is often used to refer to the
combination of iptables+Netfilter (with Netfilter not in ipchains
compatibility mode).</p>
</li>
<li>iptables-restore - a utility program that used to configure and
control Netfilter. Unlike iptables, which performs only one operation
per execution, iptables-restore can configure an entire ruleset in one
execution. It takes much less time to configure a firewall using
iptables-restore than it does using iptables.<br>
<br>
</li>
<li>Shorewall-shell - the legacy Shorewall rules compiler written in
Bourne Shell. It generates a shell script that uses iptables to
configure the firewall.<br>
<br>
</li>
<li>Shorewall-perl - a Shorewall rules compiler written in Perl. It
generates a shell script that uses iptables-restore to configure the
firewall.<br>
</li>
</ul>
<h3><a name="WhatIs"></a>What is Shorewall?</h3>
<p style="margin-left: 0.42in;">The Shoreline Firewall, more commonly
known
as "Shorewall", is a high-level tool for configuring Netfilter. You
describe
your firewall/gateway requirements using entries in a set of
configuration
files. Shorewall reads those configuration files and generates a shell
script. That shell script&nbsp; uses the
iptables or iptables-restore utility to configure Netfilter to match
your
requirements.
Shorewall can be used on a dedicated firewall system, a multi-function
gateway/router/server or on a standalone GNU/Linux system. Shorewall
does not
use Netfilter's ipchains compatibility mode; as a consequence,
Shorewall can
take advantage of Netfilter's connection state tracking capabilities to
create a stateful firewall.</p>
<p style="margin-left: 0.42in;">The current version of
Shorewall can configure both IPv4 and IPv6 firewalls.<br>
&nbsp;<br>
Shorewall is <u>not</u> a daemon. Once Shorewall has configured
Netfilter,
it's job is complete and there is no Shorewall code left running in the
system. The <a href="starting_and_stopping_shorewall.htm">/sbin/shorewall
program can be used at any time to monitor the Netfilter firewall</a>.</p>
<p style="margin-left: 0.42in;">Shorewall is not the easiest to use of
the
available iptables configuration tools but I believe that it is the
most
flexible and powerful. So if you are looking for a simple
point-and-click
set-and-forget Linux firewall solution that requires a minimum of
networking
knowledge, I would encourage you to check out the following
alternatives:</p>
<ul>
<li>
<p style="margin-bottom: 0in;"><span
style="text-decoration: underline;"><a
href="http://www.kmyfirewall.org/">kmyfirewall</a></span><br>
</p>
</li>
<li>
<p><a href="http://www.fs-security.com/">Firestarter<br>
</a></p>
</li>
</ul>
<p style="margin-left: 0.42in;">On the other hand, if you are looking
for a
Linux firewall solution that can handle complex and fast changing
network
environments then Shorewall is a logical choice.</p>
<p style="margin-left: 0.42in;">To see some of the many things that you
can
do with Shorewall, see the <a href="shorewall_features.htm">Shorewall
Features page</a>.<br>
<h3><a name="WhatIs"></a>What is Shorewall?<br>
</h3>
<p style="margin-left: 0.42in;">For a high level description of
Shorewall, see the <a href="Introduction.html">Introduction to
Shorewall</a>.<br>
</p>
<h3><a name="License"></a>License</h3>
<p style="margin-left: 0.42in;">This program is free software; you can

View File

@ -9,9 +9,9 @@
<meta http-equiv="Content-Language" content="en-us">
</head>
<body dir="ltr" lang="en-US">
<h1 align="left">Shorewall Mirrors</h1>
<p><b>Tom Eastep</b><br>
<br>
<h1 align="left">Shorewall Mirrors<br>
</h1>
<p>
Copyright © 2001-2009 Thomas M . Eastep</p>
<p>Permission is granted to copy, distribute and/or modify this
document