Displaying 20 results from an estimated 3000 matches similar to: "Website Search Improvements"
2005 Jan 21
5
Cannot restart shorewall
Hi Tom and other gurus,
I modified SHOREWALL (version 2.0.15) for bridging and I cannot restart it.
I got the following error
...
Processing /etc/shorewall/policy...
   Policy ACCEPT for fw to net using chain fw2net
   Policy REJECT for fw to loc using chain all2all
   Policy DROP for net to fw using chain net2all
   Policy ACCEPT for loc to fw using chain loc2fw
   Policy ACCEPT for loc to net
2002 Dec 18
8
iptables: Invalid argument
2004 Sep 02
3
Traffic shapping Bug ?
hello ,
i''m currently trying to set-up Traffic Shapping with Shorewall and I have strong
feelings that I found a bug.
I may be mistaken, but I tried everything and can''t get it to work.
I''ve turned ON TC_ENABLED=Yes and CLEAR_TC=Yes
when i start shorewall ( shorewall start ), i get this message :
Setting up Traffic Control Rules...
TC Rule "2 eth1 0.0.0.0/0 tcp
2005 Feb 01
5
Shorewall configuration - ''run_iptables''-problem
[This email is either empty or too large to be displayed at this time]
2009 Jun 10
1
Unable to load package:lme4 [ Ubuntu 9.04 ]
Hi folks,
When I try to load package 'lme4' on my Linux box (64-bit Ubuntu
9.04), I get the following error:
-------------------------------------
> library(lme4)
Error in dyn.load(file, DLLpath = DLLpath, ...) :
  function 'cholmod_start' not provided by package 'Matrix'
Error: package/namespace load failed for 'lme4'
------------------------------------
I
2012 May 08
19
Shorewall, TPROXY, Transparent Squid and Multiples ISP
Hello,
    I wonder if someone could use the TPROXY with Shorewall and
    transparent Squid  with using the routing rules on shorewall
    (tcrules) for hosts / networks (LAN) with multiples providers (WANs)
    directly from the internal network on port 80 (with TPROXY
    transparent squid or REDIRECT).
    On this issue, the routing rules is not work propertly because the
    source is the
2005 Mar 15
2
shorewall restart with keepalived (redundant firewalls)
Hello,
First , thanks to Tom for it''s great job !  Netfilter is really easy
and powerfull with shorewall.
So, I have configured two firewalls whith shorewall using keepalived
for the redundant VRRP stuff.
FW-a is MASTER and FW-b is BACKUP.
Everything works correctly and FW-b upgrade to MASTER when FW-a is
down or disconnected. FW-b downgrade to BACKUP when FW-a comes back.
But when I
2003 Feb 24
2
Shorewall / nmap question
I made the following adjustments to /etc/shorewall/common.def (1.3.13 with 
all relevant patches).
############################################################################
# Shorewall 1.3 -- /etc/shorewall/common.def
#
# This file defines the rules that are applied before a policy of 
# DROP or REJECT is applied. In addition to the rules defined in this file,
# the firewall will also define a
2004 May 07
5
mark ack with shorewall 2.x
Hi!
how can I mark ack packets with shorewall 2.x?
(In 1.x I have done it with own rule in common file)
TiA
CU
2003 Jan 06
3
ipsec nat-traversal
It seems to me that ipsecnat tunnel type is not complete.
Latest drafts of ipsec nat-traversal use udp port 4500 for nat-traversal 
communications. (It''s called port floating). That is needed to get rid 
of ugly ipsec passthru devices.
Now ipsecnat opens port udp/500 from any source port.
And I think ipsecnat won''t work at all with gw zone defined? I''m not 
sure about
2004 Oct 22
3
iptables: No chain/target/match by that name
I''m trying to setup Shorewall 2.0.8 with the one-interface settings on
my LFS (kernel 2.6.5) system.   I''ve read the troubleshooting guide,
recompiled my kernel with just about every netfilter/iptables module I
could find, but I''m still getting this error:
# tail /tmp/trace
+ prefix=Shorewall:smurfs:DROP:
+ ''['' 22 -gt 29 '']''
+
2002 Dec 19
4
Shorewall 1.3.12 Beta1
The first Beta Version is available at:
	http://www.shorewall.net/pub/shorewall/Beta
	ftp://ftp.shorewall.net/pub/shorewall/Beta
New features include:
1) "shorewall refresh" now reloads the traffic shaping rules (tcrules
   and tcstart).
2) "shorewall debug [re]start" now turns off debugging after an error
   occurs. This places the point of the failure near the end of the
2003 Mar 23
12
Shorewall 1.4.1
This is a minor release of Shorewall.
WARNING: This release introduces incompatibilities with prior releases.  
See http://www.shorewall.net/upgrade_issues.htm.
Changes are:
a) There is now a new NONE policy specifiable in
/etc/shorewall/policy. This policy will cause Shorewall to assume that
there will never be any traffic between the source and destination
zones.
b) Shorewall no longer
2009 Jun 19
1
using garchFit() to fit ARMA+GARCH model with exogeneous variables
Hello -
 
Here's what I'm trying to do. I want to fit a time series y with
ARMA(1,1) + GARCH(1,1), there are also an exogeneous variable x which I
wish to include, so the whole equation looks like:
 
y_t - \phi y_{t-1} = \sigma_t \epsilon_t + \theta \sigma_{t-1}
\epsilon_{t-1} + c x_t       where \epsilon_t are i.i.d. random
variables
 
\sigma_t^2 = omega + \alpha \sigma_{t-1}^2 + \beta
2010 Mar 17
1
Reg GARCH+ARIMA
Hi,
Although my doubt is pretty,as i m not from stats background i am not sure
how to proceed on this.
Currently i am doing a forecasting.I used ARIMA to forecast and time series
was volatile i used garchFit for residuals.
How to use the output of Garch to correct the forecasted values from ARIMA.
Here is my code:
###delta is the data
fit<-arima(delta,order=c(2,,0,1))
fit.res <-
2003 Jan 24
4
AW: AW: Ipsec passthrough
Sorry to barge in on an old thread.  I''m having the same trouble as the 
gent who started this thread.  I''ve tried the options described and can''t 
seem to get the tunnel to pass packets through it.  I''m using the 
Netscreen Remote VPN client (Safenet derivative) on a windows machine, 
trying to connect to a Netscreen 5xp at the other end.  The connection 
fires
2005 Apr 19
14
allow ssh access from net to fw?
Hi,
I''m trying to enable ssh (when that works, want to add:pop3s,smtp,web) from
the internet to the firewall but it does not work.
I managed to DNAT ftp to a host in the loc network (192.168.0.50) successful
but I don''t know why SSH:
Does not work for me:
ACCEPT		net		fw		tcp	22 
Works from the loc network:
ACCEPT		loc		fw		tcp	22
I have tried also with (no success):
AllowSSH
2012 Feb 06
4
[Bug 1977] New: ProxyCommand seems to no execute shell commands
https://bugzilla.mindrot.org/show_bug.cgi?id=1977
             Bug #: 1977
           Summary: ProxyCommand seems to no execute shell commands
    Classification: Unclassified
           Product: Portable OpenSSH
           Version: 5.9p1
          Platform: All
        OS/Version: All
            Status: NEW
          Severity: normal
          Priority: P2
         Component: ssh
       
2004 May 26
6
Newnotsyn Behavior
Hello,
I''ve been doing some tests on a firewall system running Shorewall 1.4, and 
have been getting some unexpected behavior when enabling the "newnotsyn" 
option.
In the test setup, I have:
----------------------------------------
/etc/shorewall/interfaces
net     eth0    detect          routefilter,tcpflags,blacklist
loc     eth1    10.0.0.255      dhcp,tcpflags,newnotsyn
2003 Jan 09
19
New on the Web Site
While I''m in temporary retirement, I''ve decided spend a little time 
experimenting with new things and making some updates to the web site. The 
biggest result of this effort to date has been:
	http://shorewall.sf.net/Shorewall_Squid_Usage.html
This outlines how to use Squid as a transparent proxy running on the 
firewall, in the DMZ or in the local network. In the latter two