On Sun, 2003-07-27 at 23:26, Jan Johansson wrote:> The doc for Aliased interfaces says
>
> Separate Rules
> If you need to make a rule for traffic to/from the firewall itself that
> only applies to a particular IP address, simply qualify the $FW zone
> with the IP address.
>
> Example (allow SSH from net to eth0:0 above):
> ACCEPT net fw:206.124.146.178 tcp 22
>
> Should that be fw? Should that not be $FW:206:124.146.178 ?
Well, ''fw'' is the default value for $FW so unless the default
value has
been changed, the two are equivalent. $FW is probably better for the
docs though.
-Tom
--
Tom Eastep \ Shorewall - iptables made easy
Shoreline, \ http://shorewall.net
Washington USA \ teastep@shorewall.net