Eduardo Ferreira
2007-Apr-09 17:45 UTC
Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Is the shorewall-perl branch already usable? I mean, I''m starting to upgrade 3 of my firewalls (I don''t use lite btw) and was looking forward to use the new features (and speed! ). If you think it is still early to use it, is there any proposed timetable? abs, -- Eduardo Ferreira Icatu Holding S.A. (21) 3804-8606 ----- Forwarded by Eduardo Ferreira/ICATU on 09/04/2007 14:41 ----- teastep@users.sourceforge.net Sent by: shorewall-coding-bounces@lists.sourceforge.net 09/04/2007 14:34 To shorewall-coding@lists.sourceforge.net cc Subject [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall Revision: 5876 http://svn.sourceforge.net/shorewall/?rev=5876&view=rev Author: teastep Date: 2007-04-09 10:34:20 -0700 (Mon, 09 Apr 2007) Log Message: ----------- Fix FASTACCEPT=Yes -- Take 3 Modified Paths: -------------- trunk/Shorewall-perl/Shorewall/Accounting.pm trunk/Shorewall-perl/Shorewall/Rules.pm This was sent by the SourceForge.net collaborative development platform, the world''s largest Open Source development site. ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV _______________________________________________ Shorewall-coding mailing list Shorewall-coding@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/shorewall-coding ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
Tom Eastep
2007-Apr-10 23:22 UTC
Re: Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Eduardo Ferreira wrote:> > Is the shorewall-perl branch already usable? I mean, I''m starting to > upgrade 3 of my firewalls (I don''t use lite btw) and was looking forward > to use the new features (and speed! ). > > If you think it is still early to use it, is there any proposed timetable?It is definitely too early to use Shorewall-perl in production. I''m still fixing really bad bugs. The first beta will be this summer with the first official release (Shorewall 4.0.0) sometime in the fall. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
Tom Eastep
2007-Apr-11 01:29 UTC
Re: Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Tom Eastep wrote:> Eduardo Ferreira wrote: >> Is the shorewall-perl branch already usable? I mean, I''m starting to >> upgrade 3 of my firewalls (I don''t use lite btw) and was looking forward >> to use the new features (and speed! ). >> >> If you think it is still early to use it, is there any proposed timetable? > > It is definitely too early to use Shorewall-perl in production. I''m still > fixing really bad bugs.Although as of lunch hour yesterday, I am now running Shorewall-perl on my own firewall. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
Eduardo Ferreira
2007-Apr-11 14:00 UTC
Re: Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Tom Eastep wrote on 10/04/2007 22:29:53:> > > > It is definitely too early to use Shorewall-perl in production. I''mstill> > fixing really bad bugs. >I guess I''ll have to wait. oh, what a pity.> Although as of lunch hour yesterday, I am now running Shorewall-perl on > my own firewall.How could I help and test? Would a iptables-save diff between the two versions (3.4.2? x shorewall-perl) be a valid way to compare them both? thanks for your help -- Eduardo Ferreira Icatu Holding S.A. (21) 3804-8606 ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
Tom Eastep
2007-Apr-11 14:21 UTC
Re: Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Eduardo Ferreira wrote:> > > Tom Eastep wrote on 10/04/2007 22:29:53: >> > >> > It is definitely too early to use Shorewall-perl in production. I''m > still >> > fixing really bad bugs. >> > I guess I''ll have to wait. oh, what a pity.I would definitely wait until 3.9.1 before I tried a very complex configuration. There are lots of known problems with 3.9.0 (see http://www1.shorewall.net/pub/shorewall/development/3.9/shorewall-perl-3.9.0/known_problems.txt).> >> Although as of lunch hour yesterday, I am now running Shorewall-perl on >> my own firewall. > How could I help and test? Would a iptables-save diff between the two > versions (3.4.2? x shorewall-perl) be a valid way to compare them both?You can help by trying shorewall-perl on as many configurations as you can. If it blows up or doesn''t work, I will need the configuration directory with a capabilities file. Comparing the output of iptables-save is a good way to check the configuration but you should not expect the output to be exactly the same. Shorewall-perl has a completely new way of dealing with broadcast addresses (see the release notes). But again, I would wait until 3.9.1... Thanks for volunteering to help, -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV