-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hi all, It''s me again :) I''ve just noticed this when I start shorewall: ... Setting up NAT... Adding Common Rules /usr/share/shorewall/firewall: line 1: /etc/shorewall/common.def: Permission denied IP Forwarding Enabled Processing /etc/shorewall/tunnels... ... I added /etc/shorewall/common to let icmp, then in it, I added line: /etc/shorewall/common.def in it. Is it correct? But, then, I click on the hyperlink to ping management FAQ, and found out that I don''t need to create /etc/shorewall/common, but instead /etc/shorewall/icmpdef. Also, don''t need to put in it /etc/shorewall/common.def in the first line. Does it mean the FAQ #5 need revision? Thanks - -- Fajar Priyanto | Reg''d Linux User #327841 | http://linux.arinet.org 14:17:47 up 6:07, Mandrake Linux release 9.2 (FiveStar) for i586 public key: https://www.arinet.org/fajar-pub.key -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.3 (GNU/Linux) iD8DBQFAc60vkp5CsIXuxqURAqkrAKDKCaRL/FxY5d2qkUBFnh1T6HJU/QCcCMaz uYS3hsjQo2n7kqofIJ8Nj2A=AGVn -----END PGP SIGNATURE-----
Fajar Priyanto wrote:> -----BEGIN PGP SIGNED MESSAGE----- > Hash: SHA1 > > Hi all, > It''s me again :) > I''ve just noticed this when I start shorewall: > ... > Setting up NAT... > Adding Common Rules > /usr/share/shorewall/firewall: line 1: /etc/shorewall/common.def: Permission > denied > IP Forwarding Enabled > Processing /etc/shorewall/tunnels... > ... > > I added /etc/shorewall/common to let icmp, then in it, I added line: > /etc/shorewall/common.def in it. > > Is it correct?No.> > But, then, I click on the hyperlink to ping management FAQ, and found out that > I don''t need to create /etc/shorewall/common, but instead > /etc/shorewall/icmpdef. Also, don''t need to put in it > /etc/shorewall/common.def in the first line. >No -- it means that you overlooked the period (".") and space (" ") before /etc/shorewall/common.def. Once more, you must add: . /etc/shorewall/common.def -- -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net