Eduardo Ferreira
2007-Apr-09 17:45 UTC
Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Is the shorewall-perl branch already usable? I mean, I''m starting to
upgrade 3 of my firewalls (I don''t use lite btw) and was looking
forward
to use the new features (and speed! ).
If you think it is still early to use it, is there any proposed timetable?
abs,
--
Eduardo Ferreira
Icatu Holding S.A.
(21) 3804-8606
----- Forwarded by Eduardo Ferreira/ICATU on 09/04/2007 14:41 -----
teastep@users.sourceforge.net
Sent by: shorewall-coding-bounces@lists.sourceforge.net
09/04/2007 14:34
To
shorewall-coding@lists.sourceforge.net
cc
Subject
[Shorewall-coding] SF.net SVN: shorewall: [5876]
trunk/Shorewall-perl/Shorewall
Revision: 5876
http://svn.sourceforge.net/shorewall/?rev=5876&view=rev
Author: teastep
Date: 2007-04-09 10:34:20 -0700 (Mon, 09 Apr 2007)
Log Message:
-----------
Fix FASTACCEPT=Yes -- Take 3
Modified Paths:
--------------
trunk/Shorewall-perl/Shorewall/Accounting.pm
trunk/Shorewall-perl/Shorewall/Rules.pm
This was sent by the SourceForge.net collaborative development platform,
the world''s largest Open Source development site.
-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net''s Techsay panel and you''ll get the chance
to share
your
opinions on IT & business topics through brief surveys-and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Shorewall-coding mailing list
Shorewall-coding@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/shorewall-coding
-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net''s Techsay panel and you''ll get the chance
to share your
opinions on IT & business topics through brief surveys-and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
Tom Eastep
2007-Apr-10 23:22 UTC
Re: Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Eduardo Ferreira wrote:> > Is the shorewall-perl branch already usable? I mean, I''m starting to > upgrade 3 of my firewalls (I don''t use lite btw) and was looking forward > to use the new features (and speed! ). > > If you think it is still early to use it, is there any proposed timetable?It is definitely too early to use Shorewall-perl in production. I''m still fixing really bad bugs. The first beta will be this summer with the first official release (Shorewall 4.0.0) sometime in the fall. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
Tom Eastep
2007-Apr-11 01:29 UTC
Re: Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Tom Eastep wrote:> Eduardo Ferreira wrote: >> Is the shorewall-perl branch already usable? I mean, I''m starting to >> upgrade 3 of my firewalls (I don''t use lite btw) and was looking forward >> to use the new features (and speed! ). >> >> If you think it is still early to use it, is there any proposed timetable? > > It is definitely too early to use Shorewall-perl in production. I''m still > fixing really bad bugs.Although as of lunch hour yesterday, I am now running Shorewall-perl on my own firewall. -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
Eduardo Ferreira
2007-Apr-11 14:00 UTC
Re: Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Tom Eastep wrote on 10/04/2007 22:29:53:> > > > It is definitely too early to use Shorewall-perl in production. I''mstill> > fixing really bad bugs. >I guess I''ll have to wait. oh, what a pity.> Although as of lunch hour yesterday, I am now running Shorewall-perl on > my own firewall.How could I help and test? Would a iptables-save diff between the two versions (3.4.2? x shorewall-perl) be a valid way to compare them both? thanks for your help -- Eduardo Ferreira Icatu Holding S.A. (21) 3804-8606 ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
Tom Eastep
2007-Apr-11 14:21 UTC
Re: Fw: [Shorewall-coding] SF.net SVN: shorewall: [5876] trunk/Shorewall-perl/Shorewall
Eduardo Ferreira wrote:> > > Tom Eastep wrote on 10/04/2007 22:29:53: >> > >> > It is definitely too early to use Shorewall-perl in production. I''m > still >> > fixing really bad bugs. >> > I guess I''ll have to wait. oh, what a pity.I would definitely wait until 3.9.1 before I tried a very complex configuration. There are lots of known problems with 3.9.0 (see http://www1.shorewall.net/pub/shorewall/development/3.9/shorewall-perl-3.9.0/known_problems.txt).> >> Although as of lunch hour yesterday, I am now running Shorewall-perl on >> my own firewall. > How could I help and test? Would a iptables-save diff between the two > versions (3.4.2? x shorewall-perl) be a valid way to compare them both?You can help by trying shorewall-perl on as many configurations as you can. If it blows up or doesn''t work, I will need the configuration directory with a capabilities file. Comparing the output of iptables-save is a good way to check the configuration but you should not expect the output to be exactly the same. Shorewall-perl has a completely new way of dealing with broadcast addresses (see the release notes). But again, I would wait until 3.9.1... Thanks for volunteering to help, -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key ------------------------------------------------------------------------- Take Surveys. Earn Cash. Influence the Future of IT Join SourceForge.net''s Techsay panel and you''ll get the chance to share your opinions on IT & business topics through brief surveys-and earn cash http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV