-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
http://shorewall.net/pub/shorewall/2.1/shorewall-2.1.10
ftp://shorewall.net/pub/shorewall/2.1/shorewall-2.1.10
New Features:
1) Using the default LOGFORMAT, chain names longer than 11 characters
(such as in user-defined actions) may result in log prefix
truncation. A new shorewall.conf action LOGTAGONLY has been added
to deal with this problem. When LOGTAGONLY=Yes, logging rules that
specify a log tag will substitute the tag for the chain name in the
log prefix.
Example -- file /etc/shorewall/action.thisisaverylogactionname:
Rule:
DROP:info:ftp 0.0.0.0/0 0.0.0.0/0 tcp 21
Log prefix with LOGTAGONLY=No:
Shorewall:thisisaverylongacti
Log prefix with LOGTAGONLY=Yes:
Shorewall:ftp:DROP
2) Shorewall now resets the ''accept_source_route'' flag for
all
interfaces. If you wish to accept source routing on an interface,
you must specify the new ''sourceroute'' interface option in
/etc/shorewall/interfaces.
3) The output of "brctl show" is now included in the output of
"shorewall status"
- -Tom
- --
Tom Eastep \ Nothing is foolproof to a sufficiently talented fool
Shoreline, \ http://shorewall.net
Washington USA \ teastep@shorewall.net
PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org
iD8DBQFBYJMoO/MAbZfjDLIRAqrMAKCJqXSAiDeModY6SXJAsdTdFDv3+gCeM1KG
mIMPVGrDTCQEeoM5AZJj5TQ=9Knc
-----END PGP SIGNATURE-----