forked from extern/shorewall_code
badf2fc9f0
By default, in Debian and its derivatives, stopping the Shorewall service executes `/sbin/shorewall clear`. The `SAFESTOP` setting in /etc/default/shorewall is intended to stop the service by calling `/sbin/shorewall stop`. However, the systemd service files do not support this. Instead, install a shell-script that sources /etc/default/shorewall and honours `SAFESTOP` when stopping Shorewall and patch the service files to call it. Signed-off-by: Jeremy Sowden <jeremy@azazel.net>
26 lines
714 B
Plaintext
26 lines
714 B
Plaintext
#
|
|
# The Shoreline Firewall (Shorewall) Packet Filtering Firewall
|
|
#
|
|
# Copyright 2011 Jonathan Underwood <jonathan.underwood@gmail.com>
|
|
# Copyright 2015 Tom Eastep <teastep@shorewall.net>
|
|
#
|
|
[Unit]
|
|
Description=Shorewall IPv6 firewall
|
|
Documentation=man:shorewall6(8)
|
|
Wants=network-online.target
|
|
After=network-online.target
|
|
After=shorewall.service
|
|
Conflicts=ip6tables.service firewalld.service
|
|
|
|
[Service]
|
|
Type=oneshot
|
|
RemainAfterExit=yes
|
|
EnvironmentFile=-/etc/default/shorewall6
|
|
StandardOutput=syslog
|
|
ExecStart=/sbin/shorewall -6 $OPTIONS start $STARTOPTIONS
|
|
ExecStop=/usr/share/shorewall/stop_service shorewall6
|
|
ExecReload=/sbin/shorewall -6 $OPTIONS reload $RELOADOPTIONS
|
|
|
|
[Install]
|
|
WantedBy=basic.target
|