forked from extern/shorewall_code
9acdbb5acf
Signed-off-by: Tom Eastep <teastep@shorewall.net>
458 lines
13 KiB
XML
458 lines
13 KiB
XML
<?xml version="1.0" encoding="UTF-8"?>
|
|
<!DOCTYPE article PUBLIC "-//OASIS//DTD DocBook XML V4.4//EN"
|
|
"http://www.oasis-open.org/docbook/xml/4.4/docbookx.dtd">
|
|
<article>
|
|
<!--/$Id$-->
|
|
|
|
<articleinfo>
|
|
<title>Shorewall 5.0 Documentation</title>
|
|
|
|
<authorgroup>
|
|
<author>
|
|
<firstname>Tom</firstname>
|
|
|
|
<surname>Eastep</surname>
|
|
</author>
|
|
</authorgroup>
|
|
|
|
<pubdate><?dbtimestamp format="Y/m/d"?></pubdate>
|
|
|
|
<copyright>
|
|
<year>2001-2017</year>
|
|
|
|
<holder>Thomas M. Eastep</holder>
|
|
</copyright>
|
|
|
|
<legalnotice>
|
|
<para>Permission is granted to copy, distribute and/or modify this
|
|
document under the terms of the GNU Free Documentation License, Version
|
|
1.2 or any later version published by the Free Software Foundation; with
|
|
no Invariant Sections, with no Front-Cover, and with no Back-Cover
|
|
Texts. A copy of the license is included in the section entitled
|
|
<quote><ulink url="GnuCopyright.htm">GNU Free Documentation
|
|
License</ulink></quote>.</para>
|
|
</legalnotice>
|
|
</articleinfo>
|
|
|
|
<section id="Frequent">
|
|
<title>Frequently Used Articles</title>
|
|
|
|
<informaltable frame="none" orient="land">
|
|
<tgroup cols="1">
|
|
<tbody>
|
|
<row>
|
|
<entry><ulink url="FAQ.htm">FAQs</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Manpages.html">IPv4 Manpages</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Manpages6.html">IPv6 Manpages</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="configuration_file_basics.htm">Configuration
|
|
File Basics</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="GettingStarted.html">Beginner
|
|
Documentation</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink
|
|
url="troubleshoot.htm">Troubleshooting</ulink></entry>
|
|
</row>
|
|
</tbody>
|
|
</tgroup>
|
|
</informaltable>
|
|
</section>
|
|
|
|
<section>
|
|
<title>Documentation for Earlier Versions</title>
|
|
|
|
<para><ulink url="4.6/Documentation_Index.html">Shorewall 4.4/4.6
|
|
Documentation</ulink></para>
|
|
|
|
<para><ulink url="4.2/Documentation_Index.html">Shorewall 4.0/4.2
|
|
Documentation</ulink></para>
|
|
</section>
|
|
|
|
<section id="Index">
|
|
<title>Index to the HOWTOs and Other Articles</title>
|
|
|
|
<informaltable frame="none">
|
|
<tgroup align="left" cols="3">
|
|
<tbody>
|
|
<row>
|
|
<entry><ulink url="6to4.htm">6to4 and 6in4 Tunnels</ulink></entry>
|
|
|
|
<entry><ulink url="KVM.html">KVM (Kernel-mode Virtual
|
|
Machine)</ulink></entry>
|
|
|
|
<entry><ulink url="Laptop.html">Shorewall on a
|
|
Laptop</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Accounting.html">Accounting</ulink></entry>
|
|
|
|
<entry><ulink url="LXC.html">Linux Containers
|
|
(LXC)</ulink></entry>
|
|
|
|
<entry><ulink url="Shorewall-perl.html">Shorewall
|
|
Perl</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Actions.html">Actions</ulink></entry>
|
|
|
|
<entry><ulink url="Vserver.html">Linux-vserver</ulink></entry>
|
|
|
|
<entry><ulink url="shorewall_setup_guide.htm">Shorewall Setup
|
|
Guide</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Shorewall_and_Aliased_Interfaces.html">Aliased
|
|
(virtual) Interfaces (e.g., eth0:0)</ulink></entry>
|
|
|
|
<entry><ulink url="ConnectionRate.html">Limiting Connection
|
|
Rates</ulink></entry>
|
|
|
|
<entry><ulink url="samba.htm">SMB</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Anatomy.html">Anatomy of
|
|
Shorewall</ulink></entry>
|
|
|
|
<entry><ulink url="shorewall_logging.html">Logging</ulink></entry>
|
|
|
|
<entry><ulink url="two-interface.htm#SNAT">SNAT</ulink>
|
|
(<firstterm>Source Network Address
|
|
Translation</firstterm>)</entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Anti-Spoofing.html">Anti-Spoofing
|
|
Measures</ulink></entry>
|
|
|
|
<entry><ulink url="Macros.html">Macros</ulink></entry>
|
|
|
|
<entry><ulink url="SplitDNS.html">Split DNS the Easy
|
|
Way</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Audit.html">AUDIT Target
|
|
support</ulink></entry>
|
|
|
|
<entry><ulink url="MAC_Validation.html">MAC
|
|
Verification</ulink></entry>
|
|
|
|
<entry><ulink url="Shorewall_Squid_Usage.html">Squid with
|
|
Shorewall</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="traffic_shaping.htm">Bandwidth
|
|
Control</ulink></entry>
|
|
|
|
<entry><ulink url="Manpages.html">Manpages</ulink></entry>
|
|
|
|
<entry><ulink
|
|
url="starting_and_stopping_shorewall.htm">Starting/stopping the
|
|
Firewall</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink
|
|
url="blacklisting_support.htm">Blacklisting/Whitelisting</ulink></entry>
|
|
|
|
<entry><ulink url="ManualChains.html">Manual
|
|
Chains</ulink></entry>
|
|
|
|
<entry><ulink url="NAT.htm">Static (one-to-one)
|
|
NAT</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry>Bridge: <ulink
|
|
url="bridge-Shorewall-perl.html">Bridge/Firewall</ulink></entry>
|
|
|
|
<entry><ulink
|
|
url="two-interface.htm#SNAT">Masquerading</ulink></entry>
|
|
|
|
<entry><ulink url="support.htm">Support</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry>Bridge: <ulink url="SimpleBridge.html">No firewalling of
|
|
traffic between bridge port</ulink></entry>
|
|
|
|
<entry><ulink url="MultiISP.html">Multiple Internet Connections
|
|
from a Single Firewall</ulink></entry>
|
|
|
|
<entry><ulink url="configuration_file_basics.htm">Tips and
|
|
Hints</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Build.html">Building Shorewall from
|
|
GIT</ulink></entry>
|
|
|
|
<entry><ulink url="Multiple_Zones.html">Multiple Zones Through One
|
|
Interface</ulink></entry>
|
|
|
|
<entry><ulink url="simple_traffic_shaping.html">Traffic
|
|
Shaping/QOS - Simple</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="CompiledPrograms.html">Compiled Programs
|
|
</ulink></entry>
|
|
|
|
<entry><ulink url="MyNetwork.html">My Shorewall
|
|
Configuration</ulink></entry>
|
|
|
|
<entry><ulink url="traffic_shaping.htm">Traffic Shaping/QOS -
|
|
Complex</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="starting_and_stopping_shorewall.htm">Commands
|
|
</ulink></entry>
|
|
|
|
<entry><ulink url="NetfilterOverview.html">Netfilter
|
|
Overview</ulink></entry>
|
|
|
|
<entry><ulink url="Shorewall_Squid_Usage.html">Transparent
|
|
Proxy</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="configuration_file_basics.htm">Configuration
|
|
File Basics</ulink></entry>
|
|
|
|
<entry><ulink url="netmap.html">Network Mapping</ulink></entry>
|
|
|
|
<entry><ulink url="UPnP.html">UPnP</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="dhcp.htm">DHCP</ulink></entry>
|
|
|
|
<entry><ulink url="NAT.htm">One-to-one NAT (Static
|
|
NAT)</ulink></entry>
|
|
|
|
<entry><ulink url="OpenVZ.html">OpenVZ</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="two-interface.htm#DNAT">DNAT
|
|
(<firstterm>Destination Network Address
|
|
Translation</firstterm>)</ulink></entry>
|
|
|
|
<entry><ulink url="OPENVPN.html">OpenVPN</ulink></entry>
|
|
|
|
<entry><ulink url="upgrade_issues.htm">Upgrade
|
|
Issues</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Docker.html">Docker</ulink></entry>
|
|
|
|
<entry><ulink url="starting_and_stopping_shorewall.htm">Operating
|
|
Shorewall</ulink></entry>
|
|
|
|
<entry><ulink url="LennyToSqueeze.html">Upgrading to Shorewall 4.4
|
|
(Upgrading Debian Lenny to Squeeze)</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Dynamic.html">Dynamic Zones</ulink></entry>
|
|
|
|
<entry><ulink url="PacketMarking.html">Packet
|
|
Marking</ulink></entry>
|
|
|
|
<entry><ulink url="VPNBasics.html">VPN</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="ECN.html">ECN Disabling by host or
|
|
subnet</ulink></entry>
|
|
|
|
<entry><ulink url="PacketHandling.html">Packet Processing in a
|
|
Shorewall-based Firewall</ulink></entry>
|
|
|
|
<entry><ulink url="VPN.htm">VPN Passthrough</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Events.html">Events</ulink></entry>
|
|
|
|
<entry><ulink url="ping.html">'Ping' Management</ulink></entry>
|
|
|
|
<entry><ulink url="blacklisting_support.htm#whitelisting">White
|
|
List Creation</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="shorewall_extension_scripts.htm">Extension
|
|
Scripts (User Exits)</ulink></entry>
|
|
|
|
<entry><ulink url="two-interface.htm#DNAT">Port
|
|
Forwarding</ulink></entry>
|
|
|
|
<entry><ulink url="XenMyWay.html">Xen - Shorewall in a Bridged Xen
|
|
DomU</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink
|
|
url="fallback.htm">Fallback/Uninstall</ulink></entry>
|
|
|
|
<entry><ulink url="ports.htm">Port Information</ulink></entry>
|
|
|
|
<entry><ulink url="XenMyWay-Routed.html">Xen - Shorewall in Routed
|
|
Xen Dom0</ulink></entry>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="FAQ.htm">FAQs</ulink></entry>
|
|
|
|
<entry><ulink url="PortKnocking.html">Port Knocking
|
|
(deprecated)</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink
|
|
url="shorewall_features.htm">Features</ulink></entry>
|
|
|
|
<entry><ulink url="Events.html">Port Knocking, Auto Blacklisting
|
|
and Other Uses of the 'Recent Match'</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Multiple_Zones.html">Forwarding Traffic on the
|
|
Same Interface</ulink></entry>
|
|
|
|
<entry><ulink url="PPTP.htm">PPTP</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="FTP.html">FTP and Shorewall</ulink></entry>
|
|
|
|
<entry><ulink url="ProxyARP.htm">Proxy ARP</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="FoolsFirewall.html">Fool's
|
|
Firewall</ulink></entry>
|
|
|
|
<entry><ulink url="shorewall_quickstart_guide.htm">QuickStart
|
|
Guides</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Helpers.html">Helpers/Helper
|
|
Modules</ulink></entry>
|
|
|
|
<entry><ulink url="NewRelease.html">Release Model</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink
|
|
url="Install.htm">Installation/Upgrade</ulink></entry>
|
|
|
|
<entry><ulink
|
|
url="shorewall_prerequisites.htm">Requirements</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="IPP2P.html">IPP2P</ulink></entry>
|
|
|
|
<entry><ulink url="Shorewall_and_Routing.html">Routing and
|
|
Shorewall</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="IPSEC-2.6.html">IPSEC</ulink></entry>
|
|
|
|
<entry><ulink url="Multiple_Zones.html">Routing on One
|
|
Interface</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="ipsets.html">Ipsets</ulink></entry>
|
|
|
|
<entry><ulink url="samba.htm">Samba</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="IPv6Support.html">IPv6 Support</ulink></entry>
|
|
|
|
<entry><ulink url="SharedConfig.html">Shared Shorewall/Shorewall6
|
|
Configuration</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="ISO-3661.html">ISO 3661 Country
|
|
Codes</ulink></entry>
|
|
|
|
<entry><ulink url="Events.html">Shorewall Events</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="Shorewall_and_Kazaa.html">Kazaa
|
|
Filtering</ulink></entry>
|
|
|
|
<entry><ulink url="Shorewall-init.html">Shorewall
|
|
Init</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
|
|
<row>
|
|
<entry><ulink url="kernel.htm">Kernel
|
|
Configuration</ulink></entry>
|
|
|
|
<entry><ulink url="Shorewall-Lite.html">Shorewall
|
|
Lite</ulink></entry>
|
|
|
|
<entry/>
|
|
</row>
|
|
</tbody>
|
|
</tgroup>
|
|
</informaltable>
|
|
</section>
|
|
</article>
|