forked from extern/shorewall_code
Change default shorewall6.conf settings.
Signed-off-by: Tom Eastep <teastep@shorewall.net>
This commit is contained in:
parent
c561f8eb03
commit
414c5c7b0c
@ -1,6 +1,6 @@
|
|||||||
###############################################################################
|
###############################################################################
|
||||||
#
|
#
|
||||||
# Shorewall Version 4 -- /etc/shorewall6/shorewall6.conf
|
# Shorewall Version 5 -- /etc/shorewall6/shorewall6.conf
|
||||||
#
|
#
|
||||||
# For information about the settings in this file, type "man shorewall6.conf"
|
# For information about the settings in this file, type "man shorewall6.conf"
|
||||||
#
|
#
|
||||||
@ -46,9 +46,9 @@ LOGALLNEW=
|
|||||||
|
|
||||||
LOGFILE=
|
LOGFILE=
|
||||||
|
|
||||||
LOGFORMAT="Shorewall:%s:%s:"
|
LOGFORMAT="%s %s "
|
||||||
|
|
||||||
LOGLIMIT=
|
LOGLIMIT="s:1/sec:10"
|
||||||
|
|
||||||
LOGTAGONLY=No
|
LOGTAGONLY=No
|
||||||
|
|
||||||
@ -92,7 +92,7 @@ PERL=/usr/bin/perl
|
|||||||
|
|
||||||
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
||||||
|
|
||||||
RESTOREFILE=
|
RESTOREFILE=restore
|
||||||
|
|
||||||
SHOREWALL_SHELL=/bin/sh
|
SHOREWALL_SHELL=/bin/sh
|
||||||
|
|
||||||
@ -141,7 +141,7 @@ CHAIN_SCRIPTS=No
|
|||||||
|
|
||||||
CLAMPMSS=No
|
CLAMPMSS=No
|
||||||
|
|
||||||
CLEAR_TC=Yes
|
CLEAR_TC=No
|
||||||
|
|
||||||
COMPLETE=Yes
|
COMPLETE=Yes
|
||||||
|
|
||||||
@ -171,7 +171,7 @@ INLINE_MATCHES=Yes
|
|||||||
|
|
||||||
IPSET_WARNINGS=Yes
|
IPSET_WARNINGS=Yes
|
||||||
|
|
||||||
IP_FORWARDING=keep
|
IP_FORWARDING=Keep
|
||||||
|
|
||||||
KEEP_RT_TABLES=Yes
|
KEEP_RT_TABLES=Yes
|
||||||
|
|
||||||
|
@ -47,9 +47,9 @@ LOGALLNEW=
|
|||||||
|
|
||||||
LOGFILE=
|
LOGFILE=
|
||||||
|
|
||||||
LOGFORMAT="Shorewall:%s:%s:"
|
LOGFORMAT="%s %s "
|
||||||
|
|
||||||
LOGLIMIT=
|
LOGLIMIT="s:1/sec:10"
|
||||||
|
|
||||||
LOGTAGONLY=No
|
LOGTAGONLY=No
|
||||||
|
|
||||||
@ -73,7 +73,7 @@ UNTRACKED_LOG_LEVEL=
|
|||||||
# L O C A T I O N O F F I L E S A N D D I R E C T O R I E S
|
# L O C A T I O N O F F I L E S A N D D I R E C T O R I E S
|
||||||
###############################################################################
|
###############################################################################
|
||||||
|
|
||||||
CONFIG_PATH=${CONFDIR}/shorewall6:${SHAREDIR}/shorewall6:${SHAREDIR}/shorewall
|
CONFIG_PATH="${CONFDIR}/shorewall6:/usr/share/shorewall6:${SHAREDIR}/shorewall"
|
||||||
|
|
||||||
GEOIPDIR=/usr/share/xt_geoip/LE
|
GEOIPDIR=/usr/share/xt_geoip/LE
|
||||||
|
|
||||||
@ -93,7 +93,7 @@ PERL=/usr/bin/perl
|
|||||||
|
|
||||||
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
||||||
|
|
||||||
RESTOREFILE=
|
RESTOREFILE=restore
|
||||||
|
|
||||||
SHOREWALL_SHELL=/bin/sh
|
SHOREWALL_SHELL=/bin/sh
|
||||||
|
|
||||||
@ -142,7 +142,7 @@ CHAIN_SCRIPTS=No
|
|||||||
|
|
||||||
CLAMPMSS=No
|
CLAMPMSS=No
|
||||||
|
|
||||||
CLEAR_TC=Yes
|
CLEAR_TC=No
|
||||||
|
|
||||||
COMPLETE=No
|
COMPLETE=No
|
||||||
|
|
||||||
@ -154,13 +154,13 @@ DONT_LOAD=
|
|||||||
|
|
||||||
DYNAMIC_BLACKLIST=Yes
|
DYNAMIC_BLACKLIST=Yes
|
||||||
|
|
||||||
EXPAND_POLICIES=No
|
EXPAND_POLICIES=Yes
|
||||||
|
|
||||||
EXPORTMODULES=Yes
|
EXPORTMODULES=Yes
|
||||||
|
|
||||||
FASTACCEPT=No
|
FASTACCEPT=No
|
||||||
|
|
||||||
FORWARD_CLEAR_MARK=
|
FORWARD_CLEAR_MARK=Yes
|
||||||
|
|
||||||
HELPERS=
|
HELPERS=
|
||||||
|
|
||||||
@ -172,7 +172,7 @@ INLINE_MATCHES=Yes
|
|||||||
|
|
||||||
IPSET_WARNINGS=Yes
|
IPSET_WARNINGS=Yes
|
||||||
|
|
||||||
IP_FORWARDING=keep
|
IP_FORWARDING=Keep
|
||||||
|
|
||||||
KEEP_RT_TABLES=Yes
|
KEEP_RT_TABLES=Yes
|
||||||
|
|
||||||
|
@ -1,6 +1,6 @@
|
|||||||
###############################################################################
|
###############################################################################
|
||||||
#
|
#
|
||||||
# Shorewall Version 4 -- /etc/shorewall6/shorewall6.conf
|
# Shorewall Version 5 -- /etc/shorewall6/shorewall6.conf
|
||||||
#
|
#
|
||||||
# For information about the settings in this file, type "man shorewall6.conf"
|
# For information about the settings in this file, type "man shorewall6.conf"
|
||||||
#
|
#
|
||||||
@ -46,9 +46,9 @@ LOGALLNEW=
|
|||||||
|
|
||||||
LOGFILE=/var/log/messages
|
LOGFILE=/var/log/messages
|
||||||
|
|
||||||
LOGFORMAT="Shorewall:%s:%s:"
|
LOGFORMAT="%s %s "
|
||||||
|
|
||||||
LOGLIMIT=
|
LOGLIMIT="s:1/sec:10"
|
||||||
|
|
||||||
LOGTAGONLY=No
|
LOGTAGONLY=No
|
||||||
|
|
||||||
@ -92,7 +92,7 @@ PERL=/usr/bin/perl
|
|||||||
|
|
||||||
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
||||||
|
|
||||||
RESTOREFILE=
|
RESTOREFILE=restore
|
||||||
|
|
||||||
SHOREWALL_SHELL=/bin/sh
|
SHOREWALL_SHELL=/bin/sh
|
||||||
|
|
||||||
@ -141,7 +141,7 @@ CHAIN_SCRIPTS=No
|
|||||||
|
|
||||||
CLAMPMSS=No
|
CLAMPMSS=No
|
||||||
|
|
||||||
CLEAR_TC=Yes
|
CLEAR_TC=No
|
||||||
|
|
||||||
COMPLETE=No
|
COMPLETE=No
|
||||||
|
|
||||||
@ -171,7 +171,7 @@ INLINE_MATCHES=Yes
|
|||||||
|
|
||||||
IPSET_WARNINGS=Yes
|
IPSET_WARNINGS=Yes
|
||||||
|
|
||||||
IP_FORWARDING=keep
|
IP_FORWARDING=Keep
|
||||||
|
|
||||||
KEEP_RT_TABLES=Yes
|
KEEP_RT_TABLES=Yes
|
||||||
|
|
||||||
|
@ -46,9 +46,9 @@ LOGALLNEW=
|
|||||||
|
|
||||||
LOGFILE=/var/log/messages
|
LOGFILE=/var/log/messages
|
||||||
|
|
||||||
LOGFORMAT="Shorewall:%s:%s:"
|
LOGFORMAT="%s %s "
|
||||||
|
|
||||||
LOGLIMIT=
|
LOGLIMIT="s:1/sec:10"
|
||||||
|
|
||||||
LOGTAGONLY=No
|
LOGTAGONLY=No
|
||||||
|
|
||||||
@ -92,7 +92,7 @@ PERL=/usr/bin/perl
|
|||||||
|
|
||||||
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/bin:/usr/local/sbin
|
||||||
|
|
||||||
RESTOREFILE=
|
RESTOREFILE=restore
|
||||||
|
|
||||||
SHOREWALL_SHELL=/bin/sh
|
SHOREWALL_SHELL=/bin/sh
|
||||||
|
|
||||||
@ -141,7 +141,7 @@ CHAIN_SCRIPTS=No
|
|||||||
|
|
||||||
CLAMPMSS=No
|
CLAMPMSS=No
|
||||||
|
|
||||||
CLEAR_TC=Yes
|
CLEAR_TC=No
|
||||||
|
|
||||||
COMPLETE=No
|
COMPLETE=No
|
||||||
|
|
||||||
@ -153,7 +153,7 @@ DONT_LOAD=
|
|||||||
|
|
||||||
DYNAMIC_BLACKLIST=Yes
|
DYNAMIC_BLACKLIST=Yes
|
||||||
|
|
||||||
EXPAND_POLICIES=No
|
EXPAND_POLICIES=Yes
|
||||||
|
|
||||||
EXPORTMODULES=Yes
|
EXPORTMODULES=Yes
|
||||||
|
|
||||||
@ -171,7 +171,7 @@ INLINE_MATCHES=Yes
|
|||||||
|
|
||||||
IPSET_WARNINGS=Yes
|
IPSET_WARNINGS=Yes
|
||||||
|
|
||||||
IP_FORWARDING=keep
|
IP_FORWARDING=Keep
|
||||||
|
|
||||||
KEEP_RT_TABLES=Yes
|
KEEP_RT_TABLES=Yes
|
||||||
|
|
||||||
|
@ -46,9 +46,9 @@ LOGALLNEW=
|
|||||||
|
|
||||||
LOGFILE=/var/log/messages
|
LOGFILE=/var/log/messages
|
||||||
|
|
||||||
LOGFORMAT="Shorewall:%s:%s:"
|
LOGFORMAT="%s %s "
|
||||||
|
|
||||||
LOGLIMIT=
|
LOGLIMIT="s:1/sec:10"
|
||||||
|
|
||||||
LOGTAGONLY=No
|
LOGTAGONLY=No
|
||||||
|
|
||||||
@ -131,7 +131,7 @@ AUTOCOMMENT=Yes
|
|||||||
|
|
||||||
AUTOHELPERS=Yes
|
AUTOHELPERS=Yes
|
||||||
|
|
||||||
AUTOMAKE=No
|
AUTOMAKE=Yes
|
||||||
|
|
||||||
BASIC_FILTERS=No
|
BASIC_FILTERS=No
|
||||||
|
|
||||||
@ -189,7 +189,7 @@ MODULE_SUFFIX=ko
|
|||||||
|
|
||||||
MUTEX_TIMEOUT=60
|
MUTEX_TIMEOUT=60
|
||||||
|
|
||||||
OPTIMIZE=1
|
OPTIMIZE=All
|
||||||
|
|
||||||
OPTIMIZE_ACCOUNTING=No
|
OPTIMIZE_ACCOUNTING=No
|
||||||
|
|
||||||
|
Loading…
Reference in New Issue
Block a user