* Tom Eastep wrote:
> On 12/10/10 5:02 PM, Nathan Gibbs wrote:
> 
> Shorewall-shell was unmaintainable - that's why I developed
> Shorewall-perl in 4.0 and why Shorewall-shell was discontinued at the
> earliest opportunity (4.4).
> 

Good choice.

From our viewpoint, if it ain't broke, don't fix it.
We ran a mix of Shorewall 1x and 3x on our firewalls from 2005-2007.
Standardized on 3.x in 2008, so that we could have a common configuration.
We had to downgrade from 3.4 to 3.0.6 due to issues with our massive ruleset.

Anyhow, can the current shorewall release do what I need as an action instead
of a macro?
If it can, upgrading our shorewalls gets a higher priority.

> That having been said, I don't personally test 14000+ rule configuration.
> 

Users, they always make software do things the developer never thought of, or
intended.
:-)


-- 
Sincerely,

Nathan Gibbs

Systems Administrator
Christ Media
http://www.cmpublishers.com


Attachment: signature.asc
Description: OpenPGP digital signature

------------------------------------------------------------------------------
Oracle to DB2 Conversion Guide: Learn learn about native support for PL/SQL,
new data types, scalar functions, improved concurrency, built-in packages, 
OCI, SQL*Plus, data movement tools, best practices and more.
http://p.sf.net/sfu/oracle-sfdev2dev 
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to