-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi Tom

Am 15.10.2015 um 17:44 schrieb Tom Eastep:
> On 10/15/2015 08:08 AM, Erich Titl wrote:
>> Hi
>> 
..

>> 
>> shorewall open fw net tcp http,https or even shorewall open fw 
>> net WEB
> 
> "shorewall open fw net tcp http,https" works.

Thanks, I did run a test

gatekeeper# shorewall version
4.6.13

gatekeeper# shorewall open fw net tcp http,https
iptables v1.4.21: host/network `fw' not found
Try `iptables -h' or 'iptables --help' for more information.
gatekeeper# cat /etc/shorewall/zones
#
# Shorewall version 4 - Zones File
#
# For information about this file, type "man shorewall-zones"
#
# The manpage is also online at
# http://www.shorewall.net/manpages/shorewall-zones.html
#
##############################################################
#ZONE   TYPE            OPTIONS         IN                      OUT
#                                       OPTIONS                 OPTIONS
fw      firewall
net     ipv4
loc     ipv4
#dmz    ipv4
vpn     ipv4

This shows that shorewall knows about fw

Chain OUTPUT (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source destination
4515 2865K fw2net all -- * eth0 0.0.0.0/0 0.0.0.0/0

It looks like the zone fw is not useable here

cheers

Erich
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (MingW32)

iEYEARECAAYFAlYf1ugACgkQt9T/nQW4ChbKZACfdKgaNVbgjKIpJqz8rew5xqj0
LVwAoKEuG9nsyWO2v7ADRRH9PxIpK2+h
=JZiZ
-----END PGP SIGNATURE-----

------------------------------------------------------------------------------
_______________________________________________
Shorewall-users mailing list
Shorewall-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to