diff --git a/Shorewall-docs/samba.htm b/Shorewall-docs/samba.htm
deleted file mode 100644
index 3f758fb17..000000000
--- a/Shorewall-docs/samba.htm
+++ /dev/null
@@ -1,186 +0,0 @@
-
-
-
-
-
-
-
- Samba
-
-
-Samba/SMB
-
-If you wish to run Samba on your firewall and access shares between
-the firewall and local hosts, you need the following rules:
-/etc/shorewall/rules:
-
-
-
-
- ACTION |
- SOURCE |
- DEST |
- PROTO |
- DEST
-PORT(S) |
- SOURCE
-PORT(S) |
- ORIGINAL
-DEST |
-
-
- ACCEPT |
- fw |
- loc |
- udp |
- 137:139 |
- |
- |
-
-
- ACCEPT |
- fw |
- loc |
- tcp |
- 137,139,445 |
- |
- |
-
-
- ACCEPT |
- fw |
- loc |
- udp |
- 1024: |
- 137 |
- |
-
-
- ACCEPT |
- loc |
- fw |
- udp |
- 137:139 |
- |
- |
-
-
- ACCEPT |
- loc |
- fw |
- tcp |
- 137,139,445 |
- |
- |
-
-
- ACCEPT |
- loc |
- fw |
- udp |
- 1024: |
- 137 |
- |
-
-
-
-
-To pass traffic SMB/Samba traffic between zones Z1 and Z2:
-/etc/shorewall/rules:
-
-
-
-
- ACTION |
- SOURCE |
- DEST |
- PROTO |
- DEST
-PORT(S) |
- SOURCE
-PORT(S) |
- ORIGINAL
-DEST |
-
-
- ACCEPT |
- Z1
- |
- Z2
- |
- udp |
- 137:139 |
- |
- |
-
-
- ACCEPT |
- Z1
- |
- Z2
- |
- tcp |
- 137,139,445 |
- |
- |
-
-
- ACCEPT |
- Z1
- |
- Z2
- |
- udp |
- 1024: |
- 137 |
- |
-
-
- ACCEPT |
- Z2
- |
- Z1
- |
- udp |
- 137:139 |
- |
- |
-
-
- ACCEPT |
- Z2
- |
- Z1
- |
- tcp |
- 137,139,445 |
- |
- |
-
-
- ACCEPT |
- Z2
- |
- Z1
- |
- udp |
- 1024: |
- 137 |
- |
-
-
-
-
-
-To make network browsing ("Network Neighborhood") work properly between
-Z1 and Z2 requires a Windows Domain Controller and/or a WINS server. I
-run Samba on my firewall to handle browsing between two zones connected
-to my firewall. Details are here.
-Last modified 10/22/2002 - Tom
-Eastep
- Copyright
-© 2002 Thomas M. Eastep.
-
-
-
diff --git a/Shorewall-docs/samba.xml b/Shorewall-docs/samba.xml
new file mode 100644
index 000000000..7944662e5
--- /dev/null
+++ b/Shorewall-docs/samba.xml
@@ -0,0 +1,51 @@
+
+
+
+
+ Samba/SMB
+
+
+
+ Tom
+
+ Eastep
+
+
+
+ 2002-10-22
+
+
+ 2002
+
+ Thomas M. Eastep
+
+
+
+ Permission is granted to copy, distribute and/or modify this
+ document under the terms of the GNU Free Documentation License, Version
+ 1.2 or any later version published by the Free Software Foundation; with
+ no Invariant Sections, with no Front-Cover, and with no Back-Cover
+ Texts. A copy of the license is included in the section entitled "GNU Free Documentation License".
+
+
+
+ If you wish to run Samba on your firewall and access shares between
+ the firewall and local hosts, you need the following rules:
+
+ /etc/shorewall/rules:ACTIONSOURCEDESTINATIONPROTOCOLPORT(S)SOURCE
+ PORT(S)ORIGINAL DEST
ACCEPTfwlocudp137:139
ACCEPTfwloctcp137,139,445
ACCEPTfwlocudp1024:137
ACCEPTlocfwudp137:139
ACCEPTlocfwtcp137,139,445
ACCEPTlocfwudp1024:137
+
+ To pass traffic SMB/Samba traffic between zones Z1 and Z2:
+
+ /etc/shorewall/rules:ACTIONSOURCEDESTINATIONPROTOCOLPORT(S)SOURCE
+ PORT(S)ORIGINAL DEST
ACCEPTZ1Z2udp137:139
ACCEPTZ1Z2tcp137,139,445
ACCEPTZ1Z2udp1024:137
ACCEPTZ2Z1udp137:139
ACCEPTZ2Z1tcp137,139,445
ACCEPTZ2Z1udp1024:137
+
+ To make network browsing ("Network Neighborhood") work
+ properly between Z1 and Z2 requires a Windows Domain Controller and/or a
+ WINS server. I run Samba on my firewall to handle browsing between two zones
+ connected to my firewall. Details are here.
+
\ No newline at end of file