From 4ee10dcf8bcc5646d8152689a950015dbda45ba1 Mon Sep 17 00:00:00 2001 From: mhnoyes Date: Sat, 13 Dec 2003 21:36:02 +0000 Subject: [PATCH] Content moved to ECN.xml git-svn-id: https://shorewall.svn.sourceforge.net/svnroot/shorewall/trunk@845 fbd18981-670d-0410-9b5c-8dc0c1a9a2bb --- Shorewall-docs/ECN.html | 76 ----------------------------------------- 1 file changed, 76 deletions(-) delete mode 100644 Shorewall-docs/ECN.html diff --git a/Shorewall-docs/ECN.html b/Shorewall-docs/ECN.html deleted file mode 100644 index ba331c4cb..000000000 --- a/Shorewall-docs/ECN.html +++ /dev/null @@ -1,76 +0,0 @@ - - - - Shorewall and ECN - - - - -
-

ECN
-

-Explicit Congestion Notification (ECN) is described in RFC 3168 and is -a proposed internet standard. Unfortunately, not all sites support ECN -and when -a TCP connection offering ECN is sent to sites that don't support it, -the -result is often that the connection request is ignored.
-
-To allow ECN to be used, Shorewall allows you to enable ECN on your -Linux systems then disable it in your firewall when the destination -matches a list that you create (the /etc/shorewall/ecn file).
-
-You enable ECN by
-
-
-
echo 1 > /proc/sys/net/ipv4/tcp_ecn
-
-You must arrange for that command to be executed at system boot. Most -distributions have a method for doing that -- on RedHat, you make an -entry in /etc/sysctl.conf.
-
-
-
net.ipv4.tcp_ecn = 1

-
-Entries in /etc/shorewall/ecn have two columns as follows:
-
-INTERFACE    - The name of an interface on your system
-
-HOST(S)        - An address (host or -subnet) of a system or group of systems accessed through the - interface in the first column. You may include a comma-separated -list of such addresses in this column.
-
-Example: Your external interface is eth0 and you want to disable ECN -for tcp connections to 192.0.2.0/24:
-
-In /etc/shorewall/ecn:
-
-
- - - - - - - - - - - -
INTERFACE
-
HOST(S)
-
eth0
-
192.0.2.0/24
-
-
-
-Last updated 3/28/2003 - Tom -Eastep -

Copyright © 2001, 2002, 2003 Thomas M. Eastep.
-

-
- -