From f21d6de4d63b7c3d132e066047edb818b648d9a3 Mon Sep 17 00:00:00 2001 From: Tom Eastep Date: Wed, 17 May 2017 15:28:51 -0700 Subject: [PATCH] Clean up the introductory part of shorewall-rules.xml Signed-off-by: Tom Eastep --- Shorewall/manpages/shorewall-rules.xml | 10 ++++------ 1 file changed, 4 insertions(+), 6 deletions(-) diff --git a/Shorewall/manpages/shorewall-rules.xml b/Shorewall/manpages/shorewall-rules.xml index 46ccb952b..4bcb98dd0 100644 --- a/Shorewall/manpages/shorewall-rules.xml +++ b/Shorewall/manpages/shorewall-rules.xml @@ -136,10 +136,8 @@ If you are not familiar with Netfilter to the point where you are comfortable with the differences between the various connection tracking - states, then it is suggested that you omit the ESTABLISHED and RELATED sections and place all of your rules in - the NEW section (That's after the line that reads ?SECTION NEW'). + states, then it is suggested that you place all of your rules in the NEW + section (That's after the line that reads ?SECTION NEW'). @@ -148,8 +146,8 @@ ALL, ESTABLISHED and RELATED sections must be empty. - An except is made if you are running Shorewall 4.4.27 or later and - you have specified a non-default value for RELATED_DISPOSITION or + An exception is made if you are running Shorewall 4.4.27 or later + and you have specified a non-default value for RELATED_DISPOSITION or RELATED_LOG_LEVEL. In that case, you may have rules in the RELATED section of this file.