http://www.shorewall.net/pub/shorewall/development/3.2/shorewall-3.2.0-RC6/ ftp://ftp.shorewall.net/pub/shorewall/development/3.2/shorewall-3.2.0-RC6/ Problems Corrected in 3.2.0 RC 6 1) When ''balance'' is specified in more than one provider, only the last such provider appears in the default route. 2) The permission settings of /etc/shorewall/params and of several files in /usr/share/shorewall/configfiles were incorrect. Other changes in 3.2.0 RC 6 1) This change will be in 3.0.9 so I''m slipping it into this RC for compatibility. It is now possible to use the special value ''detect'' in the ADDRESS column of /etc/shorewall/masq. This allows you to specify SNAT (as opposed to MASQUERADE) without having to know the ip address of the external interface. Shorewall must be restarted each time that the external address (the address of the interface named in the INTERFACE column) changes. Note that if you have done a ''shorewall save'' then it is sufficient to "shorewall restore" since the restore script will re-detect the interface''s IP address(es). -Tom -- Tom Eastep \ Nothing is foolproof to a sufficiently talented fool Shoreline, \ http://shorewall.net Washington USA \ teastep@shorewall.net PGP Public Key \ https://lists.shorewall.net/teastep.pgp.key Using Tomcat but need to do more? Need to support web services, security? Get stuff done quickly with pre-integrated technology to make your job easier Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642