forked from extern/shorewall_code
More website changes
git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@9287 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb
This commit is contained in:
parent
aa1079655c
commit
06f1422781
@ -122,12 +122,12 @@
|
||||
<itemizedlist>
|
||||
<listitem>
|
||||
<para><ulink
|
||||
url="http://www.m0n0.ch/wall/">http://www.m0n0.ch/wall/</ulink></para>
|
||||
url="http://www.kmyfirewall.org/">kmyfirewall</ulink></para>
|
||||
</listitem>
|
||||
|
||||
<listitem>
|
||||
<para><ulink
|
||||
url="http://www.fs-security.com/">http://www.fs-security.com/</ulink></para>
|
||||
url="http://www.fs-security.com/">firestarter</ulink></para>
|
||||
</listitem>
|
||||
</itemizedlist>
|
||||
|
||||
|
@ -20,6 +20,8 @@
|
||||
<copyright>
|
||||
<year>2007</year>
|
||||
|
||||
<year>2009</year>
|
||||
|
||||
<holder>Thomas M. Eastep</holder>
|
||||
</copyright>
|
||||
|
||||
@ -79,6 +81,11 @@
|
||||
<para>does a much more thorough job of checking the configuration to
|
||||
avoid run-time errors.</para>
|
||||
</listitem>
|
||||
|
||||
<listitem>
|
||||
<para>supports creating either Ipv4 or Ipv6 firewalls (Shorewall 4.2.4
|
||||
and later).</para>
|
||||
</listitem>
|
||||
</itemizedlist>
|
||||
|
||||
<para>Both compilers may be installed on your system and you can use
|
||||
@ -88,7 +95,7 @@
|
||||
<section id="Install">
|
||||
<title>Installing Shorewall Version 4</title>
|
||||
|
||||
<para>Shorewall 4 contains four packages:</para>
|
||||
<para>Shorewall 4 contains six packages:</para>
|
||||
|
||||
<itemizedlist>
|
||||
<listitem>
|
||||
@ -110,6 +117,16 @@
|
||||
run scripts generated by either Shorewall-perl or
|
||||
Shorewall-shell.</para>
|
||||
</listitem>
|
||||
|
||||
<listitem>
|
||||
<para>Shorewall6 - The utilities for creating and operating an Ipv6
|
||||
firewall. Requires Shorewall-perl.</para>
|
||||
</listitem>
|
||||
|
||||
<listitem>
|
||||
<para>Shorewall6-lite - Ipv6 equivalent of Shorewall Lite. Can run
|
||||
scripts generated by Shoreall-perl 4.2.4 and later.</para>
|
||||
</listitem>
|
||||
</itemizedlist>
|
||||
|
||||
<para>If you upgrade to Shorewall Version 4, you must install
|
||||
@ -165,185 +182,6 @@
|
||||
document</ulink> for details.</para>
|
||||
</section>
|
||||
|
||||
<section id="Compatibility">
|
||||
<title>Package Compatibility Matrix</title>
|
||||
|
||||
<para>The following table indicates which versions of the compilers are
|
||||
supported by each version of Shorewall-common.</para>
|
||||
|
||||
<informaltable>
|
||||
<tgroup cols="3">
|
||||
<colspec colname="_2" colnum="2" />
|
||||
|
||||
<colspec colname="_3" />
|
||||
|
||||
<tbody>
|
||||
<row>
|
||||
<entry align="center"><emphasis
|
||||
role="bold">Package</emphasis></entry>
|
||||
|
||||
<entry align="center" nameend="_3" namest="_2"
|
||||
valign="middle"><emphasis role="bold">Compatible
|
||||
With</emphasis></entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry>Shorewall-common 4.0.0-RC1</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.0-RC1</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.0-RC1</entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry morerows="1" valign="middle">Shorewall-common
|
||||
4.0.0-RC2</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.0-RC1</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.0-RC1</entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry>Shorewall-shell 4.0.0-RC2</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.0-RC2</entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.0</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.0 - 4.0.3</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.0 - 4.0.2</entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.1</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.0 - 4.0.3</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.0 - 4.0.1</entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.2<footnote>
|
||||
<para>Shorewall-common/lib.base should have
|
||||
patch-common-4.0.2-1.diff applied.</para>
|
||||
</footnote></entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.0 - 4.0.3</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.0 - 4.0.2</entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.3</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.0 - 4.0.3</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.0 - 4.0.3<footnote>
|
||||
<para>Shorewall-perl 4.0.3 requires Shorewall-common 4.0.3 if
|
||||
capabilities files are to be used. Shorewall-perl 4.0.3 also
|
||||
requires Shorewall-lite 4.0.3.</para>
|
||||
</footnote></entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.4</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.0 - 4.0.4</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.0 - 4.0.4<footnote>
|
||||
<para>Shorewall-perl 4.0.4 requires Shorewall-common 4.0.3 or
|
||||
later if capabilities files are to be used. Shorewall-perl
|
||||
4.0.4 also requires Shorewall-lite 4.0.3 or later.</para>
|
||||
</footnote></entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.5</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.5</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.5<footnote>
|
||||
<para>Shorewall-perl 4.0.5 also requires Shorewall-lite
|
||||
4.0.5.</para>
|
||||
</footnote></entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.6</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.5 - 4.0.6</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.5 - 4.0.6<footnote>
|
||||
<para>Shorewall-perl 4.0.6 also requires Shorewall-lite
|
||||
4.0.6.</para>
|
||||
</footnote></entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.7</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.5 - 4.0.9</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.5 - 4.0.9<footnote>
|
||||
<para>Shorewall-perl 4.0.6 and later require Shorewall-lite
|
||||
4.0.6 or later</para>
|
||||
</footnote></entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.8</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.5 - 4.0.9</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.5 - 4.0.9<footnote>
|
||||
<para>Shorewall-perl 4.0.6 and later require Shorewall-lite
|
||||
4.0.6 or later</para>
|
||||
</footnote></entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.0.9-4.0.14</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.0.5 - 4.0.14</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.0.5 - 4.0.14<footnote>
|
||||
<para>Shorewall-perl 4.0.6 and later require Shorewall-lite
|
||||
4.0.6 or later</para>
|
||||
</footnote></entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.2.0</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.2.0 </entry>
|
||||
|
||||
<entry>Shorewall-perl 4.2.0</entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.2.1</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.2.1</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.2.1</entry>
|
||||
</row>
|
||||
|
||||
<row>
|
||||
<entry valign="middle">Shorewall-common 4.2.2</entry>
|
||||
|
||||
<entry>Shorewall-shell 4.2.2</entry>
|
||||
|
||||
<entry>Shorewall-perl 4.2.2</entry>
|
||||
</row>
|
||||
</tbody>
|
||||
</tgroup>
|
||||
</informaltable>
|
||||
</section>
|
||||
|
||||
<section id="CompilerSelection">
|
||||
<title>Compiler Selection</title>
|
||||
|
||||
|
@ -7,14 +7,6 @@
|
||||
<articleinfo>
|
||||
<title>Shorewall Support Guide</title>
|
||||
|
||||
<authorgroup>
|
||||
<author>
|
||||
<firstname>Tom</firstname>
|
||||
|
||||
<surname>Eastep</surname>
|
||||
</author>
|
||||
</authorgroup>
|
||||
|
||||
<pubdate><?dbtimestamp format="Y/m/d"?></pubdate>
|
||||
|
||||
<copyright>
|
||||
@ -54,9 +46,9 @@
|
||||
|
||||
<note>
|
||||
<para>Shorewall versions earlier than 4.0.0 are no longer supported;
|
||||
we will try to help but I will personally not spend time reading
|
||||
earlier code to try to help you solve a problem and I will not
|
||||
release a patch to correct any defect found.</para>
|
||||
we will try to help but we will not spend time reading earlier code
|
||||
to try to help you solve a problem and we will not release a patch
|
||||
to correct any defect found.</para>
|
||||
</note>
|
||||
</listitem>
|
||||
|
||||
@ -68,7 +60,7 @@
|
||||
|
||||
<listitem>
|
||||
<para>The <ulink url="FAQ.htm">FAQ</ulink> has solutions to more than
|
||||
50 common problems.</para>
|
||||
70 common problems.</para>
|
||||
</listitem>
|
||||
|
||||
<listitem>
|
||||
|
@ -7,12 +7,6 @@
|
||||
<articleinfo>
|
||||
<title>Useful Links</title>
|
||||
|
||||
<author>
|
||||
<firstname>Tom</firstname>
|
||||
|
||||
<surname>Eastep</surname>
|
||||
</author>
|
||||
|
||||
<pubdate><?dbtimestamp format="Y/m/d"?></pubdate>
|
||||
|
||||
<copyright>
|
||||
|
@ -6,9 +6,9 @@
|
||||
</head>
|
||||
<body>
|
||||
<h1 style="text-align: left;">Shorewall Documentation</h1>
|
||||
<span style="font-weight: bold;">Tom Eastep</span><br>
|
||||
<span style="font-weight: bold;">
|
||||
</span>Copyright © 2005-2009 Thomas M. Eastep<br>
|
||||
<span style="font-weight: bold;"></span>
|
||||
<span style="font-weight: bold;"></span>Copyright © 2005-2009 Thomas M.
|
||||
Eastep<br>
|
||||
<p>Permission is granted to copy, distribute and/or modify this
|
||||
document
|
||||
under the terms of the GNU Free Documentation License, Version 1.2 or
|
||||
@ -26,24 +26,22 @@ License</a></span>”.<br>
|
||||
<hr style="width: 100%; height: 2px;"> <strong></strong>
|
||||
<br>
|
||||
<table style="text-align: left; width: 100%;" border="1" cellpadding="2"
|
||||
cellspacing="2">
|
||||
cellspacing="0">
|
||||
<tbody>
|
||||
<tr style="font-weight: bold;">
|
||||
<td style="vertical-align: top; text-align: center;">Document<br>
|
||||
</td>
|
||||
<td style="vertical-align: top; text-align: center;">Shorewall 4.2<br>
|
||||
</td>
|
||||
<td style="vertical-align: top; text-align: center;">Shorewall 4.0<br>
|
||||
</td>
|
||||
<td style="vertical-align: top; text-align: center;">Shorewall 3.x<br>
|
||||
</td>
|
||||
<td style="vertical-align: top; text-align: left;">Description<br>
|
||||
</td>
|
||||
<th style="vertical-align: top; text-align: center;">Shorewall
|
||||
4.2<br>
|
||||
</th>
|
||||
<th style="vertical-align: top; text-align: center;">Shorewall
|
||||
4.0<br>
|
||||
</th>
|
||||
<th style="vertical-align: top; text-align: center;">Shorewall
|
||||
3.x<br>
|
||||
</th>
|
||||
<th style="vertical-align: top; text-align: left;">Description<br>
|
||||
</th>
|
||||
</tr>
|
||||
<tr>
|
||||
<td style="vertical-align: top;"><span style="font-weight: bold;">Alphabetical
|
||||
Index</span><br>
|
||||
</td>
|
||||
<td style="vertical-align: top; text-align: center;"><span
|
||||
style="font-weight: bold;"></span><strong><a
|
||||
href="Documentation_Index.html"><strong>Index</strong></a></strong></td>
|
||||
@ -51,15 +49,14 @@ Index</span><br>
|
||||
href="Documentation_Index.html"><strong>Index</strong></a></strong></td>
|
||||
<td style="vertical-align: top; text-align: center;"><a
|
||||
style="font-weight: bold;" href="3.0/Documentation_Index.html">Index</a></td>
|
||||
<td style="vertical-align: top;">Index to over 70 articles with
|
||||
<td style="vertical-align: top;">Alphabetical index to over 70
|
||||
articles with
|
||||
topics ranging from Accounting to Xen</td>
|
||||
</tr>
|
||||
<tr>
|
||||
<td style="vertical-align: top;"><span style="font-weight: bold;">FAQs</span><br>
|
||||
</td>
|
||||
<td
|
||||
style="vertical-align: top; text-align: center; font-weight: bold;"><a
|
||||
href="3.0/FAQ.htm"><strong><a href="FAQ.htm"><strong>FAQs</strong></a></strong></a></td>
|
||||
href="3.0/FAQ.htm"><strong></strong></a><strong><a href="FAQ.htm"><strong>FAQs</strong></a></strong></td>
|
||||
<td style="vertical-align: top; text-align: center;"><a
|
||||
href="FAQ.htm"><strong>FAQs</strong></a> </td>
|
||||
<td
|
||||
@ -70,12 +67,10 @@ asked
|
||||
questions</td>
|
||||
</tr>
|
||||
<tr>
|
||||
<td style="vertical-align: top;"><span style="font-weight: bold;">IPv4
|
||||
Man pages</span><br>
|
||||
</td>
|
||||
<td style="vertical-align: top; text-align: center;"><a
|
||||
href="3.0/manpages/Manpages.html"><span style="font-weight: bold;"></span></a><strong></strong><strong><strong><a
|
||||
href="Manpages.html"><strong>Manpages</strong></a></strong></strong> </td>
|
||||
href="Manpages.html"><strong>IPv4 Manpages</strong></a></strong></strong>
|
||||
</td>
|
||||
<td
|
||||
style="vertical-align: top; text-align: center; font-weight: bold;"><a
|
||||
href="../../../../../4.0/Manpages.html">Manpages</a></td>
|
||||
@ -85,11 +80,8 @@ Man pages</span><br>
|
||||
and Shorewall-lite man pages</td>
|
||||
</tr>
|
||||
<tr>
|
||||
<td style="vertical-align: top;"><span style="font-weight: bold;">IPv6
|
||||
Man Pages</span><br>
|
||||
</td>
|
||||
<td style="vertical-align: top; text-align: center;"><a
|
||||
href="Manpages6.html"><span style="font-weight: bold;">Manpages</span></a>
|
||||
href="Manpages6.html"><span style="font-weight: bold;">IPv6 Manpages</span></a>
|
||||
</td>
|
||||
<td style="vertical-align: top; text-align: center;">-<br>
|
||||
</td>
|
||||
|
@ -9,9 +9,7 @@
|
||||
<body>
|
||||
<h1 style="text-align: left;">Shorewall News and Announcements<br>
|
||||
</h1>
|
||||
<p>
|
||||
<span style="font-weight: bold;">Tom Eastep<br>
|
||||
<br>
|
||||
<p><span style="font-weight: bold;">
|
||||
</span>Copyright © 2001-2008 Thomas M. Eastep</p>
|
||||
<p>Permission is granted to copy, distribute and/or modify this
|
||||
document
|
||||
|
@ -22,8 +22,15 @@ license is included in the section entitled <span
|
||||
style="text-decoration: underline;">"</span><a href="GnuCopyright.htm"
|
||||
target="_self">GNU Free Documentation License</a>".<br>
|
||||
</p>
|
||||
<p>2009-01-14</p>
|
||||
<p>2009-01-15</p>
|
||||
<hr>
|
||||
<h3 style="margin-left: 40px;"><a href="#Notice">Attention Users of
|
||||
Shorewall's Multi-ISP Feature</a></h3>
|
||||
<div style="margin-left: 40px;">
|
||||
<h3><a href="#Notice1">Attention Users of BRIDGING=Yes</a></h3>
|
||||
<h3><a href="#Kernel2.4">Attention Kernel 2.4 Users</a></h3>
|
||||
</div>
|
||||
<hr style="width: 100%; height: 2px;">
|
||||
<h2><a name="Notice">Important Notice to Users of Shorewall's Multi-ISP
|
||||
Feature</a></h2>
|
||||
<p>A bug in Shorewall versions 3.2.0-3.2.10, 3.4.0-3.4.6 and
|
||||
|
@ -25,20 +25,10 @@ to Contribute</a><br>
|
||||
href="copyright.htm">Copyright© 2001-2009</a></small><small><a
|
||||
href="copyright.htm"><br>
|
||||
Thomas M. Eastep</a></small></p>
|
||||
<!-- shorewall logo -->
|
||||
<div style="text-align: center;"><img alt="Shorweall Logo"
|
||||
style="border: 0px solid ; width: 88px; height: 31px;"
|
||||
src="images/gareth-davies-logo3_88x31.png" align="middle"><br>
|
||||
</div>
|
||||
<small><a
|
||||
href="mailto:webmaster@shorewall.net?subject=Website%20Comments"></a><br>
|
||||
<small>
|
||||
</small>
|
||||
<div style="text-align: center;"><small><br>
|
||||
Site search by</small>
|
||||
<div style="text-align: center;"><small>Site search</small>
|
||||
<br>
|
||||
<a href="http://www.google.com/"><img
|
||||
src="http://www.google.com/logos/Logo_40wht.gif" alt="Google"
|
||||
style="border: 0px solid ; width: 100px; height: 41px;" align="middle"></a><br>
|
||||
</div>
|
||||
<table
|
||||
style="background-color: rgb(255, 255, 240); width: 100%; height: 70px;"
|
||||
@ -56,6 +46,9 @@ Site search by</small>
|
||||
href="http://dir.gmane.org/gmane.comp.security.shorewall">Mailing
|
||||
List Archive Search</a><br>
|
||||
</div>
|
||||
<br>
|
||||
<div style="text-align: center;"><br>
|
||||
<img alt="Shorweall Logo"
|
||||
style="border: 0px solid ; width: 88px; height: 31px;"
|
||||
src="images/gareth-davies-logo3_88x31.png" align="middle"></div>
|
||||
</body>
|
||||
</html>
|
||||
|
@ -9,9 +9,9 @@
|
||||
<meta http-equiv="Content-Language" content="en-us">
|
||||
</head>
|
||||
<body dir="ltr" lang="en-US">
|
||||
<h1 align="left">Shorewall Download</h1>
|
||||
<p><b>Tom Eastep<br>
|
||||
<br>
|
||||
<h1 align="left">Shorewall Download<br>
|
||||
</h1>
|
||||
<p><b>
|
||||
</b>Copyright © 2001-2009 Thomas M. Eastep</p>
|
||||
<p>Permission is granted to copy, distribute and/or modify this
|
||||
document
|
||||
@ -28,12 +28,14 @@ license is included in the section entitled “<a href="GnuCopyright.htm"
|
||||
<h2>Table of Contents</h2>
|
||||
<p><b><a href="#Which">Package Information</a><br>
|
||||
<a href="#Sites">Download Sites</a><br>
|
||||
</b><a href="#SVN"><b><a href="download.htm#Updates">Finding Updates
|
||||
</b><a href="#SVN"><b></b></a><b><a href="download.htm#Updates">Finding
|
||||
Updates
|
||||
that Correct Known Problems</a><br>
|
||||
</b></a><b><a href="#SVN">SVN</a></b></p>
|
||||
</b><b><a href="#SVN">SVN</a></b></p>
|
||||
<hr>
|
||||
<h2><a name="Which"></a>Package Information</h2>
|
||||
<p><b>Before trying to install, I strongly urge you to read and print a
|
||||
<p><b>Before trying to install, we strongly urge you to read and print
|
||||
a
|
||||
copy
|
||||
of the <a href="shorewall_quickstart_guide.htm">Shorewall QuickStart
|
||||
Guide</a> for the configuration that most closely matches your own.</b>
|
||||
@ -114,12 +116,6 @@ single execution of the
|
||||
rpm utility.<br>
|
||||
</p>
|
||||
<p>Here are the <a href="Install.htm">installation instructions</a>.</p>
|
||||
<p><span style="font-weight: bold;">You probably don't want to install
|
||||
both a
|
||||
Shorewall compiler and Shorewall Lite on the same system. See the <a
|
||||
href="CompiledPrograms.html#Lite">Shorewall Lite Documentation</a> for
|
||||
details.</span><br>
|
||||
</p>
|
||||
<p>Once you've printed the appropriate QuickStart Guide, download the
|
||||
appropriate modules:</p>
|
||||
<ul>
|
||||
@ -214,7 +210,7 @@ using our public key <a
|
||||
</p>
|
||||
<dl>
|
||||
<dd>
|
||||
<table border="2" cellpadding="2" cellspacing="2">
|
||||
<table border="0" cellpadding="2" cellspacing="0">
|
||||
<tbody>
|
||||
<tr>
|
||||
<td>
|
||||
@ -349,12 +345,9 @@ using our public key <a
|
||||
</dl>
|
||||
<p style="margin-left: 0.42in;"><b>Redhat</b> and <b>Fedora</b> RPMS
|
||||
provided
|
||||
by Simon Matter: <a href="http://www.invoca.ch/pub/packages/shorewall/">http://www.invoca.ch/pub/packages/shorewall/</a><br>
|
||||
by Simon Matter: <a href="http://www.invoca.ch/pub/packages/shorewall/">http://www.invoca.ch/pub/packages/shorewall/</a><b></b><br>
|
||||
<br>
|
||||
<b>Mandriva</b> RPMS provided by Jack Coates: <a
|
||||
href="http://www.monkeynoodle.org/comp/net/shorewall/">http://www.monkeynoodle.org/comp/net/shorewall/</a><br>
|
||||
<br>
|
||||
<b>Slackware</b> packages created by JMedina. You can <a
|
||||
<b>Slackware</b> packages created by Jorge Medina. You can <a
|
||||
href="http://tuxjm.net/downloads/source/testing-10.2/">download them
|
||||
from his
|
||||
site</a>.<br>
|
||||
|
@ -22,7 +22,9 @@ license is included in the section entitled <span
|
||||
style="text-decoration: underline;">"</span><a href="GnuCopyright.htm"
|
||||
target="_self">GNU Free Documentation License</a>".<br>
|
||||
</p>
|
||||
<p>The Shorewall Logo is the work of Gareth Davies of <a target="_top"
|
||||
<p>The <a target="_top"
|
||||
href="http://wiki.shorewall.net/wiki/LogoDesignCompetition">Shorewall
|
||||
Logo</a> is the work of Gareth Davies of <a target="_top"
|
||||
href="http://thusa.co.za">Thusa</a> and is licensed under the Creative
|
||||
Commons
|
||||
Attribution-Share Alike 2.5 South Africa License. To view a copy of
|
||||
@ -35,13 +37,13 @@ Francisco,
|
||||
California 94105, USA.</p>
|
||||
<p>2009-01-15</p>
|
||||
<hr style="width: 100%; height: 2px;">
|
||||
<h2>Table of Contents</h2>
|
||||
<h3>On this page:<br>
|
||||
</h3>
|
||||
<p style="margin-bottom: 0in; margin-left: 0.4166in;"><a
|
||||
href="shorewall_index.htm#Releases">Current Shorewall Releases</a><br>
|
||||
<a href="shorewall_index.htm#GettingStarted">Getting Started with
|
||||
Shorewall</a><br>
|
||||
<a href="shorewall_index.htm#Info">Looking for Information?</a><br>
|
||||
<a href="#Glossary">Glossary</a><br>
|
||||
<a href="#WhatIs">What is Shorewall?</a><a href="#Info"></a><br>
|
||||
<a href="#License">License</a></p>
|
||||
<p style="margin-left: 0.42in;"></p>
|
||||
@ -91,103 +93,14 @@ version (see above) then select the <a
|
||||
closely
|
||||
matches your environment and follow the step by step instructions.</p>
|
||||
<h3><a name="Info"></a>Looking for Information?</h3>
|
||||
<p style="margin-left: 0.42in;">The <a href="Documentation.html">Documentation
|
||||
<p style="margin-left: 0.42in;">The <a href="Documentation_Index.html">Documentation
|
||||
Index</a> is a good place to start as
|
||||
is the Site Search in the frame to the left.</p>
|
||||
<h3><a name="Glossary"></a>Glossary</h3>
|
||||
<ul>
|
||||
<li>
|
||||
<p style="margin-bottom: 0in;"><a href="http://www.netfilter.org/"
|
||||
target="_top">Netfilter</a> - the packet filter facility built into
|
||||
the 2.4 and later Linux kernels.</p>
|
||||
</li>
|
||||
<li>
|
||||
<p style="margin-bottom: 0in;">ipchains - the packet filter
|
||||
facility built into the 2.2 Linux kernels. Also the name of the utility
|
||||
program used to configure and control that facility. Netfilter can be
|
||||
used in ipchains compatibility mode.</p>
|
||||
</li>
|
||||
<li>
|
||||
<p>iptables - the utility program used to configure and control
|
||||
Netfilter. The term 'iptables' is often used to refer to the
|
||||
combination of iptables+Netfilter (with Netfilter not in ipchains
|
||||
compatibility mode).</p>
|
||||
</li>
|
||||
<li>iptables-restore - a utility program that used to configure and
|
||||
control Netfilter. Unlike iptables, which performs only one operation
|
||||
per execution, iptables-restore can configure an entire ruleset in one
|
||||
execution. It takes much less time to configure a firewall using
|
||||
iptables-restore than it does using iptables.<br>
|
||||
<br>
|
||||
</li>
|
||||
<li>Shorewall-shell - the legacy Shorewall rules compiler written in
|
||||
Bourne Shell. It generates a shell script that uses iptables to
|
||||
configure the firewall.<br>
|
||||
<br>
|
||||
</li>
|
||||
<li>Shorewall-perl - a Shorewall rules compiler written in Perl. It
|
||||
generates a shell script that uses iptables-restore to configure the
|
||||
firewall.<br>
|
||||
</li>
|
||||
</ul>
|
||||
<h3><a name="WhatIs"></a>What is Shorewall?</h3>
|
||||
<p style="margin-left: 0.42in;">The Shoreline Firewall, more commonly
|
||||
known
|
||||
as "Shorewall", is a high-level tool for configuring Netfilter. You
|
||||
describe
|
||||
your firewall/gateway requirements using entries in a set of
|
||||
configuration
|
||||
files. Shorewall reads those configuration files and generates a shell
|
||||
script. That shell script uses the
|
||||
iptables or iptables-restore utility to configure Netfilter to match
|
||||
your
|
||||
requirements.
|
||||
Shorewall can be used on a dedicated firewall system, a multi-function
|
||||
gateway/router/server or on a standalone GNU/Linux system. Shorewall
|
||||
does not
|
||||
use Netfilter's ipchains compatibility mode; as a consequence,
|
||||
Shorewall can
|
||||
take advantage of Netfilter's connection state tracking capabilities to
|
||||
create a stateful firewall.</p>
|
||||
<p style="margin-left: 0.42in;">The current version of
|
||||
Shorewall can configure both IPv4 and IPv6 firewalls.<br>
|
||||
<br>
|
||||
Shorewall is <u>not</u> a daemon. Once Shorewall has configured
|
||||
Netfilter,
|
||||
it's job is complete and there is no Shorewall code left running in the
|
||||
system. The <a href="starting_and_stopping_shorewall.htm">/sbin/shorewall
|
||||
program can be used at any time to monitor the Netfilter firewall</a>.</p>
|
||||
<p style="margin-left: 0.42in;">Shorewall is not the easiest to use of
|
||||
the
|
||||
available iptables configuration tools but I believe that it is the
|
||||
most
|
||||
flexible and powerful. So if you are looking for a simple
|
||||
point-and-click
|
||||
set-and-forget Linux firewall solution that requires a minimum of
|
||||
networking
|
||||
knowledge, I would encourage you to check out the following
|
||||
alternatives:</p>
|
||||
<ul>
|
||||
<li>
|
||||
<p style="margin-bottom: 0in;"><span
|
||||
style="text-decoration: underline;"><a
|
||||
href="http://www.kmyfirewall.org/">kmyfirewall</a></span><br>
|
||||
</p>
|
||||
</li>
|
||||
<li>
|
||||
<p><a href="http://www.fs-security.com/">Firestarter<br>
|
||||
</a></p>
|
||||
</li>
|
||||
</ul>
|
||||
<p style="margin-left: 0.42in;">On the other hand, if you are looking
|
||||
for a
|
||||
Linux firewall solution that can handle complex and fast changing
|
||||
network
|
||||
environments then Shorewall is a logical choice.</p>
|
||||
<p style="margin-left: 0.42in;">To see some of the many things that you
|
||||
can
|
||||
do with Shorewall, see the <a href="shorewall_features.htm">Shorewall
|
||||
Features page</a>.<br>
|
||||
<h3><a name="WhatIs"></a>What is Shorewall?<br>
|
||||
</h3>
|
||||
<p style="margin-left: 0.42in;">For a high level description of
|
||||
Shorewall, see the <a href="Introduction.html">Introduction to
|
||||
Shorewall</a>.<br>
|
||||
</p>
|
||||
<h3><a name="License"></a>License</h3>
|
||||
<p style="margin-left: 0.42in;">This program is free software; you can
|
||||
|
@ -9,9 +9,9 @@
|
||||
<meta http-equiv="Content-Language" content="en-us">
|
||||
</head>
|
||||
<body dir="ltr" lang="en-US">
|
||||
<h1 align="left">Shorewall Mirrors</h1>
|
||||
<p><b>Tom Eastep</b><br>
|
||||
<br>
|
||||
<h1 align="left">Shorewall Mirrors<br>
|
||||
</h1>
|
||||
<p>
|
||||
Copyright © 2001-2009 Thomas M . Eastep</p>
|
||||
<p>Permission is granted to copy, distribute and/or modify this
|
||||
document
|
||||
|
Loading…
Reference in New Issue
Block a user