diff --git a/Shorewall/manpages/shorewall-rules.xml b/Shorewall/manpages/shorewall-rules.xml index 5e84772a4..aea47bcf7 100644 --- a/Shorewall/manpages/shorewall-rules.xml +++ b/Shorewall/manpages/shorewall-rules.xml @@ -129,8 +129,10 @@ NEW - Packets in the NEW, INVALID and UNTRACKED states are processed - by rules in this section. + Packets in the NEW state are processed by rules in this + section. If the INVALID and/or UNTRACKED sections are empty or not + included, then the packets in the corresponding state(s) are also + processed in this section. @@ -264,7 +266,8 @@ - AUDIT[(accept|drop|reject)] + AUDIT[(accept|drop|reject)] Added in Shorewall 4.5.10. Audits the packet with the @@ -275,7 +278,11 @@ - A_ACCEPT, A_ACCEPT+ and A_ACCEPT! + A_ACCEPT, A_ACCEPT+ and A_ACCEPT! Added in Shorewall 4.4.20. Audited versions of ACCEPT, @@ -285,7 +292,8 @@ - A_DROP and A_DROP! + A_DROP and A_DROP! Added in Shorewall 4.4.20. Audited versions of DROP and @@ -295,7 +303,8 @@ - A_REJECT AND A_REJECT! + A_REJECT AND A_REJECT! Added in Shorewall 4.4.20. Audited versions of REJECT @@ -422,7 +431,7 @@ - HELPER + HELPER Added in Shorewall 4.5.7. This action requires that the @@ -476,7 +485,8 @@ - IPTABLES({iptables-target + IPTABLES({iptables-target [option ...]) @@ -665,8 +675,9 @@ - TARPIT [(tarpit | - honeypot | TARPIT [(tarpit | honeypot | reset)] diff --git a/Shorewall6/manpages/shorewall6-rules.xml b/Shorewall6/manpages/shorewall6-rules.xml index 2c0f50ab6..264b8426d 100644 --- a/Shorewall6/manpages/shorewall6-rules.xml +++ b/Shorewall6/manpages/shorewall6-rules.xml @@ -122,8 +122,10 @@ NEW - Packets in the NEW, INVALID and UNTRACKED states are processed - by rules in this section. + Packets in the NEW state are processed by rules in this + section. If the INVALID and/or UNTRACKED sections are empty or not + included, then the packets in the corresponding state(s) are also + processed in this section. @@ -237,7 +239,8 @@ - AUDIT[(accept|drop|reject)] + AUDIT[(accept|drop|reject)] Added in Shorewall 4.5.10. Audits the packet with the @@ -248,7 +251,8 @@ - A_ACCEPT, and A_ACCEPT! + A_ACCEPT, and A_ACCEPT! Added in Shorewall 4.4.20. Audited versions of ACCEPT @@ -258,7 +262,8 @@ - A_DROP and A_DROP! + A_DROP and A_DROP! Added in Shorewall 4.4.20. Audited versions of DROP and @@ -268,7 +273,8 @@ - A_REJECT AND A_REJECT! + A_REJECT AND A_REJECT! Added in Shorewall 4.4.20. Audited versions of REJECT @@ -396,7 +402,7 @@ - HELPER + HELPER Added in Shorewall 4.5.7. This action requires that the @@ -450,7 +456,8 @@ - IP6TABLES({ip6tables-target + IP6TABLES({ip6tables-target [option ...]) @@ -642,8 +649,9 @@ - TARPIT [(tarpit | - honeypot | TARPIT [(tarpit | honeypot | reset)]