diff --git a/Shorewall/manpages/shorewall.conf.xml b/Shorewall/manpages/shorewall.conf.xml index ffb2e55f1..4ab09ebfd 100644 --- a/Shorewall/manpages/shorewall.conf.xml +++ b/Shorewall/manpages/shorewall.conf.xml @@ -774,13 +774,14 @@ Added in Shorewall 4.4.7. When set to No or no, - chain-based dynamic blacklisting using the shorewall6 - drop, shorewall6 reject, - shorewall6 logdrop and shorewall6 + chain-based dynamic blacklisting using shorewall + drop, shorewall reject, + shorewall logdrop and shorewall logreject is disabled. Default is Yes. Beginning with Shorewall 5.0.8, - ipset-based dynamic blacklisting is also supported. The name of the - set (setname) and the level + ipset-based dynamic blacklisting using the shorewall + blacklist command is also supported. The name of the set + (setname) and the level (log_level), if any, at which blacklisted traffic is to be logged may also be specified. The default set name is SW_DBL4 and the default log level is (no diff --git a/Shorewall6/manpages/shorewall6.conf.xml b/Shorewall6/manpages/shorewall6.conf.xml index 0d7463915..74f5939a2 100644 --- a/Shorewall6/manpages/shorewall6.conf.xml +++ b/Shorewall6/manpages/shorewall6.conf.xml @@ -635,13 +635,14 @@ Added in Shorewall 4.4.7. When set to No or no, - chain-based dynamic blacklisting using the shorewall6 + chain-based dynamic blacklisting using shorewall6 drop, shorewall6 reject, shorewall6 logdrop and shorewall6 logreject is disabled. Default is Yes. Beginning with Shorewall 5.0.8, - ipset-based dynamic blacklisting is also supported. The name of the - set (setname) and the level + ipset-based dynamic blacklisting using shorewall6 + blacklist is also supported. The name of the set + (setname) and the level (log_level), if any, at which blacklisted traffic is to be logged may also be specified. The default set name is SW_DBL6 and the default log level is (no